CVE-2026-10619
Improper Authentication in Sayan365 Student Management System
Publication date: 2026-06-02
Last updated on: 2026-06-02
Assigner: VulDB
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| sayan365 | student-management-system | to 7f3c9ce7d410332335c2affac93a385485051800 (inc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-287 | When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in the sayan365 student-management-system up to a certain version. It affects an unknown function and results in improper authentication, meaning that the system does not correctly verify the identity of users. The attack exploiting this vulnerability can be executed remotely, and the exploit is publicly available.
The product uses a rolling release model, so specific version information for affected or updated releases is not available. Multiple endpoints within the system are affected.
How can this vulnerability impact me? :
The vulnerability can lead to improper authentication, which may allow unauthorized users to gain access to the system remotely. This can compromise the confidentiality, integrity, and availability of the system and its data.
- Confidentiality impact: unauthorized access to sensitive information.
- Integrity impact: unauthorized modification of data.
- Availability impact: potential disruption or denial of service.