← Terug naar overzicht

A vulnerability has been identified in Mstfakts College-Management-System affecting the login.php file in the Front-end directory. The flaw involves improper authentication through manipulation of the email argument, allowing attackers to bypass authentication remotely. The exploit has been publicly disclosed and is available for use, increasing the risk of active exploitation. The product uses a rolling release model, meaning no specific version details are available for affected or patched releases. The project maintainer was notified via an issue report but has not yet responded. This lack of response and the public availability of the exploit make this a high-risk vulnerability. No patch or workaround has been officially provided at this time.

Affected products

  • Mstfakts College-Management-System

Related CVE's

  • CVE-2026-86214

Categories

  • Identity & Access
  • Web Technologies