Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2022-48506

EPSS 0.07% · P20
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2022-48506

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
A flawed pseudorandom number generator in Dominion Voting Systems ImageCast Precinct (ICP and ICP2) and ImageCast Evolution (ICE) scanners allows anyone to determine the order in which ballots were cast from public ballot-level data, allowing deanonymization of voted ballots, in several types of scenarios. This issue was observed for use of the following versions of Democracy Suite: 5.2, 5.4-NM, 5.5, 5.5-A, 5.5-B, 5.5-C, 5.5-D, 5.7-A, 5.10, 5.10A, 5.15. NOTE: the Democracy Suite 5.17 EAC Certificate of Conformance mentions "Improved pseudo random number algorithm," which may be relevant.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Dominion Voting Systems ImageCast X 安全特征问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Dominion Voting Systems ImageCast X是Dominion Voting Systems公司的直观且可配置的面对面投票解决方案。 Dominion Voting Systems ImageCast Precinct和ImageCast Evolution存在安全漏洞,该漏洞源于伪随机数生成器存在缺陷,允许任何人根据公共选票级别数据确定选票的投出顺序,从而允许对已投票的选票进行多种类型的去匿名化场景。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2022-48506

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2022-48506

登录查看更多情报信息。

Same Patch Batch · n/a · 2023-06-19 · 23 CVEs total

CVE-2023-35840elFinder 路径遍历漏洞
CVE-2023-35843NocoDB 路径遍历漏洞
CVE-2023-3022Linux kernel 安全漏洞
CVE-2023-3312Linux kernel 资源管理错误漏洞
CVE-2023-34641KioWare 安全漏洞
CVE-2023-34642KioWare 安全漏洞
CVE-2023-35862libcoap 缓冲区错误漏洞
CVE-2023-34602JeecgBoot SQL注入漏洞
CVE-2023-34603JeecgBoot SQL注入漏洞
CVE-2023-35866KeePassXC 安全漏洞
CVE-2023-35839Solon 代码问题漏洞
CVE-2023-35857Siren Investigate 代码问题漏洞
CVE-2023-35844Lightdash 路径遍历漏洞
CVE-2023-35846Virtualsquare picoTCP 安全漏洞
CVE-2023-35847Virtualsquare picoTCP 安全漏洞
CVE-2023-35848Virtualsquare picoTCP 安全漏洞
CVE-2023-35849Virtualsquare picoTCP 代码问题漏洞
CVE-2023-34657EyouCms 跨站脚本漏洞
CVE-2023-35852Suricata 路径遍历漏洞
CVE-2023-35853Suricata 安全漏洞

Showing top 20 of 23 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2022-48506

No comments yet


Leave a comment