Total
                    7 CVE
                
            | CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 | 
|---|---|---|---|---|---|
| CVE-2025-10617 | 1 Razormist | 1 Online Polling System | 2025-09-20 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A weakness has been identified in SourceCodester Online Polling System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/positions.php. This manipulation of the argument ID causes sql injection. The attack may be initiated remotely. The exploit has been made available to the public and could be exploited. | |||||
| CVE-2025-10078 | 1 Razormist | 1 Online Polling System | 2025-09-09 | 7.5 HIGH | 7.3 HIGH | 
| A vulnerability was detected in SourceCodester Online Polling System 1.0. Affected is an unknown function of the file /admin/candidates.php. Performing manipulation of the argument ID results in sql injection. Remote exploitation of the attack is possible. The exploit is now public and may be used. | |||||
| CVE-2025-10082 | 1 Razormist | 1 Online Polling System | 2025-09-09 | 7.5 HIGH | 7.3 HIGH | 
| A vulnerability has been found in SourceCodester Online Polling System 1.0. Affected is an unknown function of the file /admin/manage-admins.php. Such manipulation of the argument email leads to sql injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-10077 | 1 Razormist | 1 Online Polling System | 2025-09-09 | 7.5 HIGH | 7.3 HIGH | 
| A security vulnerability has been detected in SourceCodester Online Polling System 1.0. This impacts an unknown function of the file /registeracc.php. Such manipulation of the argument email leads to sql injection. The attack may be launched remotely. The exploit has been disclosed publicly and may be used. | |||||
| CVE-2025-10076 | 1 Razormist | 1 Online Polling System | 2025-09-09 | 7.5 HIGH | 7.3 HIGH | 
| A weakness has been identified in SourceCodester Online Polling System 1.0. This affects an unknown function of the file /manage-profile.php. This manipulation of the argument email causes sql injection. The attack may be initiated remotely. The exploit has been made available to the public and could be exploited. | |||||
| CVE-2025-10075 | 1 Razormist | 1 Online Polling System | 2025-09-09 | 4.0 MEDIUM | 3.5 LOW | 
| A security flaw has been discovered in SourceCodester Online Polling System 1.0. The impacted element is an unknown function of the file /manage-profile.php. The manipulation of the argument firstname results in cross site scripting. The attack can be launched remotely. The exploit has been released to the public and may be exploited. | |||||
| CVE-2025-9699 | 1 Razormist | 1 Online Polling System | 2025-09-08 | 7.5 HIGH | 7.3 HIGH | 
| A vulnerability was detected in SourceCodester Online Polling System Code 1.0. This vulnerability affects unknown code of the file /admin/checklogin.php. The manipulation of the argument myusername results in sql injection. The attack may be performed from a remote location. The exploit is now public and may be used. | |||||
