关键漏洞信息 Title: SourceCodester Student Result Management System 1.0 Improper Access Controls Description: A critical vulnerability in SourceCodester Student Result Management System 1.0. Weak access controls in the file allow for unauthorized access and manipulation of SMTP configuration. Impact: - Unauthenticated attackers can use a malicious SMTP server to intercept the "Forgot Password" reset link. - This leads to a full Account Takeover (ATO) of the Administrator account. Source: - GitHub link VulDB Entry: 2347310 Status: Accepted Points: 20 Submission Date: 02/10/2026 Moderation Date: 02/21/2026