CVE-2026-86674 | ningzichun Student Management System up to 98760f5711cf6dc8b4adca53a9e207ca49b02ebf login.php session_start session fixiation (Issue 16)
A vulnerability was found in ningzichun Student Management System up to 98760f5711cf6dc8b4adca53a9e207ca49b02ebf. It has been declared as critical. Affected by this vulnerability is the function session_start of the file login.php. The manipulation results in session fixiation.
This vulnerability is reported as CVE-2026-86674. The attack can be launched remotely. Moreover, an exploit is present.
This product does not use versioning. This is why information about affected and unaffected releases are unavailable.
The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More