Security Advisory
CVE-2019-25320
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
E Learning Script 1.0 contains an authentication bypass vulnerability that allows attackers to access the dashboard without valid credentials by manipulating login parameters. Attackers can exploit the /login.php file by sending a specific payload =or to bypass authentication and gain unauthorized access to the system.