Vulnerabilities (CVE)

Filtered by vendor Fauzantrif Election Project Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-9336 1 Fauzantrif Election Project 1 Fauzantrif Election 2024-02-28 3.5 LOW 5.4 MEDIUM
fauzantrif eLection 2.0 has XSS via the Admin Dashboard -> Settings -> Election -> "message if election is closed" field.
CVE-2020-9340 1 Fauzantrif Election Project 1 Fauzantrif Election 2024-02-28 6.5 MEDIUM 7.2 HIGH
fauzantrif eLection 2.0 has SQL Injection via the admin/ajax/op_kandidat.php id parameter.