CVE-2023-45766

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Jan 2, 2025
CWE ID 862

Summary

CVE-2023-45766 is a critical vulnerability affecting Poll Maker, a team polling solution. The issue stems from a missing authorization control that enables unauthorized access to polls. Specifically, Poll Maker fails to enforce sufficient access control checks, allowing exploitation of incorrectly configured security levels. This vulnerability puts data at risk, potentially exposing sensitive poll information to unauthorized users. Poll Maker versions from n/a through 4.7.1 are affected, highlighting the urgency for users to update to a secure version.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share