Medium severity6.5NVD Advisory· Published Sep 26, 2024· Updated Jun 17, 2026
CVE-2024-45987
CVE-2024-45987
Description
Projectworld Online Voting System Version 1.0 is vulnerable to Cross Site Request Forgery (CSRF) via voter.php. This vulnerability allows an attacker to craft a malicious link that, when clicked by an authenticated user, automatically submits a vote for a specified party without the user's consent or knowledge. The attack leverages the user's active session to perform the unauthorized action, compromising the integrity of the voting process.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:online_voting_system_project:online_voting_system:1.0:*:*:*:*:*:*:*
- Projectworld Online Voting System/Projectworld Online Voting Systemdescription
- Range: 1.0
Patches
Vulnerability mechanics
References
1- github.com/soursec/CVEs/tree/main/CVE-2024-45987nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.