A vulnerability was determined in Mstfakts College-Management-System. Impacted is an unknown function of the file Front-end/login.php. This manipulation of the argument email causes improper authentication. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The project was informed of the problem early through an issue report but has not responded yet.

Project Subscriptions

Vendors Products
Mstfakts College-management-system Subscribe
Mstfakts College-management-system Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sun, 06 Sep 2026 13:15:00 +0000

Type Values Removed Values Added
Description A vulnerability was determined in Mstfakts College-Management-System. Impacted is an unknown function of the file Front-end/login.php. This manipulation of the argument email causes improper authentication. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The project was informed of the problem early through an issue report but has not responded yet.
Title Mstfakts College-Management-System login.php improper authentication
First Time appeared Mstfakts College-management-system
Mstfakts College-management-system mstfakts College-management-system
Weaknesses CWE-287
CPEs cpe:2.3:a:mstfakts_college-management-system:mstfakts_college-management-system:*:*:*:*:*:*:*:*
Vendors & Products Mstfakts College-management-system
Mstfakts College-management-system mstfakts College-management-system
References
Metrics cvssV2_0

{'score': 7.5, 'vector': 'AV:N/AC:L/Au:N/C:P/I:P/A:P/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 7.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-06T13:00:07.452Z

Reserved: 2026-09-05T18:59:12.286Z

Link: CVE-2026-86214

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-06T13:17:10.667

Modified: 2026-09-06T13:17:10.667

Link: CVE-2026-86214

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses