Lucene search

K
wpvulndbWpvulndbWPVDB-ID:E3D42D5A-E31B-4022-AA69-AA1CDE241DFB
HistoryFeb 08, 2024 - 12:00 a.m.

CP Polls < 1.0.72 - Unauthenticated Poll Limit Bypass

2024-02-0800:00:00
wpscan.com
5
wordpress
polls cp
unauthenticated
poll limit bypass
vulnerability
voting system

6.7 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.0%

Description The Polls CP plugin for WordPress is vulnerable to Poll Limit Bypass in all versions up to, and including, 1.0.71. This is due to insufficient controls on on the voting system. This makes it possible for unauthenticated attackers to vote multiple times.

CPENameOperatorVersion
eq1.0.72

6.7 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.0%

Related for WPVDB-ID:E3D42D5A-E31B-4022-AA69-AA1CDE241DFB