CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.5. Exploitation may require the attacker to be authenticated.
CVE
CVE-2023-27258
Severity
HIGH
CVSS
7.5
EPSS
0.51%
Original NVD Description
Missing authentication in the GetStudentGroupStudents method in IDAttend’s IDWeb application 3.1.052 and earlier allows retrieval of student and teacher data by unauthenticated attackers.
Related CVEs
Other vulnerabilities affecting the same vendor(s)