CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.5. Exploitation may require the attacker to be authenticated.
CVE
CVE-2023-26575
Severity
HIGH
CVSS
7.5
EPSS
0.70%
Original NVD Description
Missing authentication in the SearchStudentsStaff method in IDAttend’s IDWeb application 3.1.052 and earlier allows extraction sensitive student and teacher data by unauthenticated attackers.
Related CVEs
Other vulnerabilities affecting the same vendor(s)