Vulnerability Details CVE-2024-26492
An issue in Online Diagnostic Lab Management System 1.0 allows a remote attacker to gain control of a 'Staff' user account via a crafted POST request using the id, email, password, and cpass parameters.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 55.5%
CVSS Severity
CVSS v3 Score 6.3
Products affected by CVE-2024-26492
-
cpe:2.3:a:oretnom23:online_diagnostic_lab_management_system:1.0