The e-School from Ventem has a Missing Authorization...
High severity
Unreviewed
Published
Jul 30, 2025
to the GitHub Advisory Database
•
Updated Jul 30, 2025
Description
Published by the National Vulnerability Database
Jul 30, 2025
Published to the GitHub Advisory Database
Jul 30, 2025
Last updated
Jul 30, 2025
The e-School from Ventem has a Missing Authorization vulnerability, allowing remote attackers with regular privilege to access administrator functions, including creating, modifying, and deleting accounts. They can even escalate any account to system administrator privilege.
References