在 Sambit Raj 学生管理系统(版本标识为 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5 及之前版本)中发现了一个缺陷。该缺陷影响组件“密码处理器”中文件 aca.sql 的某个未知功能。通过对参数 Password 进行操纵,可能导致敏感信息以明文形式存储。该漏洞可被远程利用。利用方式已公开,可能已被利用。由于该产品采用滚动发布模式以支持持续交付,因此受影响版本或更新版本的版本信息不可用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| sambitraj | Student Management System | 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5 |
cpe:2.3:a:sambitraj:student_management_system:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-82698 | 5.3 MEDIUM | sambitraj Student-Management-System aca.sql default password |
| CVE-2026-82697 | 3.7 LOW | sambitraj Student-Management-System session_start cookie httponly flag |
No comments yet