CVE-2026-10619
Received Received - Intake
Improper Authentication in Sayan365 Student Management System

Publication date: 2026-06-02

Last updated on: 2026-06-02

Assigner: VulDB

Description
A vulnerability was detected in sayan365 student-management-system up to 7f3c9ce7d410332335c2affac93a385485051800. This impacts an unknown function. The manipulation results in improper authentication. The attack can be executed remotely. The exploit is now public and may be used. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. Multiple endpoints are affected. The project was informed of the problem early through an issue report but has not responded yet.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-06-02
Last Modified
2026-06-02
Generated
2026-06-03
AI Q&A
2026-06-03
EPSS Evaluated
N/A
NVD
Affected Vendors & Products
Showing 1 associated CPE
Vendor Product Version / Range
sayan365 student-management-system to 7f3c9ce7d410332335c2affac93a385485051800 (inc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-287 When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability exists in the sayan365 student-management-system up to a certain version. It affects an unknown function and results in improper authentication, meaning that the system does not correctly verify the identity of users. The attack exploiting this vulnerability can be executed remotely, and the exploit is publicly available.

The product uses a rolling release model, so specific version information for affected or updated releases is not available. Multiple endpoints within the system are affected.


How can this vulnerability impact me? :

The vulnerability can lead to improper authentication, which may allow unauthorized users to gain access to the system remotely. This can compromise the confidentiality, integrity, and availability of the system and its data.

  • Confidentiality impact: unauthorized access to sensitive information.
  • Integrity impact: unauthorized modification of data.
  • Availability impact: potential disruption or denial of service.

Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart