VDB
Sign up
MEDIUM4.3

GHSA-xmh7-35v2-fp6h

Skuul School Management System has a Sensitive Data Exposure Vulnerability in Uploaded Images

Details

A security vulnerability has been detected in yungifez Skuul School Management System up to 2.6.5. This issue affects some unknown processing of the file /user/profile of the component Image Handler. Such manipulation leads to information disclosure. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Are you affected?

Enter the version of the package you're using.

Affected packages

Packagist/yungifez/skuul
Introduced in: 0

No fixed version published yet for yungifez/skuul (composer). Pin to a known-safe version or switch to an alternative.

References