VYPR

School ERP

by Arox Solution

CVEs (1)

  • CVE-2019-13294CriJul 4, 2019
    risk 0.68cvss 9.8epss 0.19

    AROX School-ERP Pro has a command execution vulnerability. import_stud.php and upload_fille.php do not have session control. Therefore an unauthenticated user can execute a command on the system.