CVE-2025-6352

MEDIUM

code-projects Automated Voting System 1.0 - Direct Request

Title source: llm
STIX 2.1

Description

A vulnerability classified as problematic has been found in code-projects Automated Voting System 1.0. Affected is an unknown function of the file /vote.php of the component Backend. The manipulation leads to direct request. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

Scores

CVSS v3 5.3
EPSS 0.0023
EPSS Percentile 45.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-425
Status published
Products (1)
fabian/automated_voting_system 1.0
Published Jun 20, 2025
Tracked Since Feb 18, 2026