High severity7.5NVD Advisory· Published Sep 27, 2017· Updated May 13, 2026
CVE-2017-14766
CVE-2017-14766
Description
The Simple Student Result plugin before 1.6.4 for WordPress has an Authentication Bypass vulnerability because the fn_ssr_add_st_submit() function and fn_ssr_del_st_submit() function in functions.php only require knowing the student id number.
Affected products
1- cpe:2.3:a:saadamin:simple_student_result:*:*:*:*:*:wordpress:*:*Range: <=1.6.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- limbenjamin.com/articles/simple-student-result-auth-bypass.htmlnvdExploitThird Party Advisory
- wpvulndb.com/vulnerabilities/8920nvdExploitThird Party Advisory
- wordpress.org/plugins/simple-student-result/nvdRelease NotesThird Party Advisory
News mentions
0No linked articles in our index yet.