Description
An improper access control vulnerability in Koollab LMS
allowed an
unauthenticated attacker to forcibly terminate the session of any user given
their email address via the login kickout endpoint, resulting in a denial of
service.
Published: 2026-07-29
Score: 3.7 Low
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An improper access control flaw in Koollab LMS allows an attacker to terminate legitimate user sessions by exploiting the login kickout endpoint. The vulnerability is triggered by supplying an email address, enabling an unauthenticated attacker to forcibly disconnect any user and cause a denial of service for that user. The weakness is a classic example of CWE‑284, where relevant authorization checks are missing, leading to a loss of service availability.

Affected Systems

Three Learning’s Koollab LMS product is impacted. No specific product versions are listed in the available data; the vulnerability applies to all current releases of the LMS until a patch is issued.

Risk and Exploitability

The CVSS score of 3.7 indicates low severity, and the EPSS score of less than 1 % suggests a very low probability of widespread exploitation at present. The vulnerability is classified as not listed in CISA KEV. Because the attack vector is unauthenticated, an attacker requires no credentials; however, the attacker must know or guess a target email address to cause the session termination. The overall risk remains low but persistent until mitigated.

Generated by OpenCVE AI on August 3, 2026 at 13:52 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the vendor‑issued patch or upgrade to a version that fixes the improper access control on the kickout endpoint.
  • If a patch is not yet available, configure the application firewall or reverse proxy to allow the /login-kickout endpoint only for authenticated requests or from trusted network ranges.
  • Continuously monitor session termination logs for anomalous or repeated disconnect attempts to identify potential exploitation attempts.

Generated by OpenCVE AI on August 3, 2026 at 13:52 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 29 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Three Learning
Three Learning koollab Lms
Weaknesses CWE-284
Vendors & Products Three Learning
Three Learning koollab Lms
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 29 Jul 2026 06:45:00 +0000

Type Values Removed Values Added
Description An improper access control vulnerability in Koollab LMS allowed an unauthenticated attacker to forcibly terminate the session of any user given their email address via the login kickout endpoint, resulting in a denial of service.
Title Improper access control vulnerability
References
Metrics cvssV3_1

{'score': 3.7, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L'}


Subscriptions

Three Learning Koollab Lms
cve-icon MITRE

Status: PUBLISHED

Assigner: CSA

Published:

Updated: 2026-07-29T14:32:09.066Z

Reserved: 2026-07-16T02:33:02.674Z

Link: CVE-2026-63235

cve-icon Vulnrichment

Updated: 2026-07-29T14:32:02.453Z

cve-icon NVD

Status : Deferred

Published: 2026-07-29T07:16:42.923

Modified: 2026-07-30T16:54:05.457

Link: CVE-2026-63235

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T14:00:07Z

Weaknesses