← العودة للجدول
CVE-2026-11474
CVE-2026-11474 — A security flaw has been discovered in Kushan2k student-management-system up to
📅 2026-06-07
🟠 High 🔥 No NVD Exploit Web CVSS 7.3

📋 الوصف الكامل

A security flaw has been discovered in Kushan2k student-management-system up to f16a4ceaddd6729c4b306ed4641cda3176c1ef2a. Affected is an unknown function of the file service/RegisterService.php of the component Registration Endpoint. Performing a manipulation of the argument stimg results in unrestricted upload. The attack may be initiated remotely. The exploit has been released to the public and

💻 الأنظمة المتأثرة

PHP

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-11474

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-11474 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←