A vulnerability classified as critical was found in School Club Application System 1.0. This vulnerability affects a request to the file /scas/classes/Users.php?f=save_user. The manipulation with a POST request leads to privilege escalation. The attack can be initiated remotely and does not require authentication. The exploit has been disclosed to the public and may be used.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://vuldb.com/?id.196750 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: VulDB
Published: 2022-04-09T20:10:12
Updated: 2024-08-02T23:55:24.546Z
Reserved: 2022-04-09T00:00:00
Link: CVE-2022-1287
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-04-09T20:15:07.757
Modified: 2024-11-21T06:40:25.033
Link: CVE-2022-1287
Redhat
No data.