Showing 1 vulnerability on this page for elearning-script

Signals CISA KEV Ransomware Nuclei
amitkolloldey vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

elearning-script 1.0 - Authentication Bypass

E Learning Script 1.0 contains an authentication bypass vulnerability that allows attackers to access the dashboard without valid credentials by manipulating login parameters. Attackers can exploit the /login.php file by sending a specific payload '=''or' to bypass authentication and gain unauthorized access to the system.

CWE-89Feb 12, 2026
CVSS8.8v4.0EPSS0.308%PoCs1SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX