First published: Fri Feb 09 2024(Updated: )
Code-projects Simple School Managment System 1.0 allows Authentication Bypass via the username and password parameters at School/teacher_login.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Simple School Management System (code-projects) | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-25313 is rated as a high severity vulnerability due to its potential for unauthorized access.
To fix CVE-2024-25313, update Simple School Management System to a version that includes security patches for authentication mechanisms.
CVE-2024-25313 allows attackers to bypass authentication, potentially compromising user accounts and sensitive data.
Anyone using Simple School Management System version 1.0 is affected by CVE-2024-25313 due to the authentication bypass issue.
CVE-2024-25313 is exploited through direct manipulation of the username and password parameters in the login form at School/teacher_login.php.