PT-2024-36465 · Unknown · Phpgurukul Online Birth Certificate System
Mohammed Athif
·
Published
2024-12-17
·
Updated
2025-03-27
·
CVE-2024-55057
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Phpgurukul Online Birth Certificate System version 1.0
Description
The issue is related to insufficient password requirements, which can lead to unauthorized access to user accounts. This weakness in password rules can allow someone to access user accounts without permission.
Recommendations
For Phpgurukul Online Birth Certificate System version 1.0, consider implementing stronger password requirements to mitigate the risk of unauthorized access. As a temporary workaround, restrict access to sensitive features of the system until a more secure password policy is in place. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Phpgurukul Online Birth Certificate System