PT-2021-22933 · Unknown+1 · Online Enrollment Management System+1

Published

2021-12-28

·

Updated

2022-01-07

·

CVE-2021-40579

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Online Enrollment Management System in PHP and PayPal Free Source Code version 1.0
Description The issue is related to incorrect access control, which can be exploited remotely to gain privileges.
Recommendations For version 1.0, update the access control mechanism to properly restrict and manage user privileges, ensuring that only authorized users can perform sensitive actions.

Exploit

Fix

IDOR

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-40579

Affected Products

Online Enrollment Management System
Paypal