Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-92fh-pv8f-mv7c

Опубликовано: 13 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.8
CVSS3: 6.5

Описание

E Learning Script 1.0 contains an authentication bypass vulnerability that allows attackers to access the dashboard without valid credentials by manipulating login parameters. Attackers can exploit the /login.php file by sending a specific payload '=''or' to bypass authentication and gain unauthorized access to the system.

E Learning Script 1.0 contains an authentication bypass vulnerability that allows attackers to access the dashboard without valid credentials by manipulating login parameters. Attackers can exploit the /login.php file by sending a specific payload '=''or' to bypass authentication and gain unauthorized access to the system.

EPSS

Процентиль: 22%
0.00308
Низкий

8.8 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 6.5
nvd
4 месяца назад

E Learning Script 1.0 contains an authentication bypass vulnerability that allows attackers to access the dashboard without valid credentials by manipulating login parameters. Attackers can exploit the /login.php file by sending a specific payload '=''or' to bypass authentication and gain unauthorized access to the system.

EPSS

Процентиль: 22%
0.00308
Низкий

8.8 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-89