CVE-2026-97646 | ningzichun student-management-system up to 98760f5711cf6dc8b4adca53a9e207ca49b02ebf admin/fun/getStudent.php sid authorization
A vulnerability identified as critical has been detected in ningzichun student-management-system up to 98760f5711cf6dc8b4adca53a9e207ca49b02ebf. This affects an unknown function of the file admin/fun/getStudent.php. This manipulation of the argument sid causes authorization bypass.
This vulnerability is tracked as CVE-2026-97646. The attack is possible to be carried out remotely. Moreover, an exploit is present.
The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More