VYPR

Amazing Little Poll

by Mr Corner

CVEs (2)

  • CVE-2023-6768CriDec 20, 2023
    risk 0.61cvss 9.4epss 0.01

    Authentication bypass vulnerability in Amazing Little Poll affecting versions 1.3 and 1.4. This vulnerability could allow an unauthenticated user to access the admin panel without providing any credentials by simply accessing the "lp_admin.php?adminstep=" parameter.

  • CVE-2023-6769MedDec 20, 2023
    risk 0.42cvss 6.5epss 0.01

    Stored XSS vulnerability in Amazing Little Poll, affecting versions 1.3 and 1.4. This vulnerability allows a remote attacker to store a malicious JavaScript payload in the "lp_admin.php" file in the "question" and "item" parameters. This vulnerability could lead to malicious…