Vote Pro is a focused voting or election-management platform with a narrow product footprint centered on its core Vote Pro application. The durable vulnerability signal reflects application-layer input-handling issues, particularly SQL injection and related data-validation weaknesses characteristic of database-backed web systems. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Vote Pro over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-0504HIGH Eval injection vulnerability in poll_frame.php in Vote! Pro 4.0, and possibly other scripts, allows remote attackers to execute arbitrary code via the poll_id parameter, which is s | Jan 26, 2007 | 10.0 | 37 | NO | YES |
CVE-2007-0535HIGH Multiple eval injection vulnerabilities in Vote! Pro 4.0, and possibly earlier, allow remote attackers to execute arbitrary code via requests to unspecified PHP scripts with the po | Jan 26, 2007 | 7.5 | 29 | NO | YES |
CVE-2005-4632HIGH SQL injection vulnerability in poll_frame.php in Vote! Pro 4.0 and earlier allows remote attackers to execute arbitrary SQL commands via the poll_id parameter. | Dec 31, 2005 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Vote Pro.
Media articles that mention a CVE ID that affects a product developed by Vote Pro — matched by CVE ID, not by vendor name.