PT-2022-18245 · Unknown · Rosariosis+1

Published

2022-09-06

·

Updated

2022-09-13

·

CVE-2022-2714

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions rosariosis versions prior to 10.0 RosarioSIS Student Information System versions prior to 10.1
Description The issue is related to improper handling of length parameter inconsistency in the GitHub repository francoisjacquet/rosariosis.
Recommendations For versions prior to 10.0, update to version 10.0 or later. For RosarioSIS Student Information System versions prior to 10.1, update to version 10.1 or later.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2022-2714
GHSA-VH4M-MW8W-G4W8

Affected Products

Rosariosis Student Information System
Rosariosis