Vulnerability Details CVE-2020-8504
School Management Software PHP/mySQL through 2019-03-14 allows office_admin/?action=addadmin CSRF to add an administrative user.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 41.1%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 4.3
Products affected by CVE-2020-8504
-
cpe:2.3:a:arox:school_management_software_php/mysql:-
-
cpe:2.3:a:arox:school_management_software_php/mysql:2019-03-14