We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-27712



Assignermitre
Reserved2024-02-26
Published2024-07-05
Updated2024-08-02

Description

An issue in Eskooly Free Online School management Software v.3.0 and before allows a remote attacker to escalate privileges via the User Account Mangemnt component in the authentication mechanism.

References

https://blog.be-hacktive.com/eskooly-cve/eskooly-broken-authentication/cve-2024-27712-user-enumeration-via-account-settings-in-eskooly-web-product-less-than-v3.0

cve.org CVE-2024-27712

nvd.nist.gov CVE-2024-27712

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-27712
Support options

Helpdesk Telegram

Subscribe to our newsletter to learn more about our work.