CVE-2018-15833

In Vanilla before 2.6.1, the polling functionality allows Insecure Direct Object Reference (IDOR) via the Poll ID, leading to the ability of a single user to select multiple Poll Options (e.g., vote for multiple items).
Configurations

Configuration 1

cpe:2.3:a:vanillaforums:vanilla_forums:*:*:*:*:*:*:*:*

Information

Published : 2018-08-26 05:29

Updated : 2020-08-24 05:37


NVD link : CVE-2018-15833

Mitre link : CVE-2018-15833

Products Affected
No products.
CWE