VYPR
Medium severity6.5NVD Advisory· Published Apr 9, 2022· Updated Jun 17, 2026

CVE-2022-1287

CVE-2022-1287

Description

A vulnerability classified as critical was found in School Club Application System 1.0. This vulnerability affects a request to the file /scas/classes/Users.php?f=save_user. The manipulation with a POST request leads to privilege escalation. The attack can be initiated remotely and does not require authentication. The exploit has been disclosed to the public and may be used.

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.