CVE-2019-25320
EUVD-2019-1956612.02.2026, 23:16
E Learning Script 1.0 contains an authentication bypass vulnerability that allows attackers to access the dashboard without valid credentials by manipulating login parameters. Attackers can exploit the /login.php file by sending a specific payload '=''or' to bypass authentication and gain unauthorized access to the system.
Awaiting analysis
This vulnerability is currently awaiting analysis.