Vulnerabilities (CVE)

Filtered by vendor Scytl Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-25023 1 Scytl 1 Secure Vote 2021-03-05 6.4 MEDIUM 6.5 MEDIUM
An issue was discovered in Scytl sVote 2.1. Because the IP address from an X-Forwarded-For header (which can be manipulated client-side) is used for the internal application logs, an attacker can inject wrong IP addresses into these logs.