Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
include/class_poll.php in Advanced Poll 2.0.4 uses the HTTP_X_FORWARDED_FOR (X-Forwarded-For HTTP header) to identify the IP address of a client, which makes it easier for remote attackers to spoof the source IP and bypass voting restrictions.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Advanced Poll include/class_poll.php 访问控制绕过漏洞
Vulnerability Description
Advanced Poll 2.0.4 的include/class_poll.php使用HTTP_X_FORWARDED_FOR (X-Forwarded-For HTTP头) 来识别客户端的IP地址,使得远程攻击者更易于伪造源 IP并绕过投票限制。
CVSS Information
N/A
Vulnerability Type
N/A