A vulnerability classified as critical was found in...
Critical severity
Unreviewed
Published
Apr 10, 2022
to the GitHub Advisory Database
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Apr 9, 2022
Published to the GitHub Advisory Database
Apr 10, 2022
Last updated
Jan 27, 2023
A vulnerability classified as critical was found in School Club Application System 1.0. This vulnerability affects a request to the file /scas/classes/Users.php?f=save_user. The manipulation with a POST request leads to privilege escalation. The attack can be initiated remotely and does not require authentication. The exploit has been disclosed to the public and may be used.
References