๐Ÿ” CVE Alert

CVE-2026-11335

MEDIUM 6.3

tittuvarghese CollegeManagementSystem login-form.php session_start session fixiation

CVSS Score
6.3
EPSS Score
0.0%
EPSS Percentile
0th

A flaw has been found in tittuvarghese CollegeManagementSystem 3e476335cfbfb9a049e09f474c7ec885f69a9df3/a38852979f7e27ae67b610dce5979500ef8ebe01. This impacts the function session_start of the file /login-form.php. Executing a manipulation of the argument UserAuthData can lead to session fixiation. The attack can be launched remotely. The exploit has been published and may be used. This product does not use versioning. This is why information about affected and unaffected releases are unavailable. The project was informed of the problem early through an issue report but has not responded yet.

CWE CWE-384
Vendor tittuvarghese
Product collegemanagementsystem
Published Jun 5, 2026
Last Updated Jun 5, 2026
Stay Ahead of the Next One

Get instant alerts for tittuvarghese collegemanagementsystem

Be the first to know when new medium vulnerabilities affecting tittuvarghese collegemanagementsystem are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

tittuvarghese / CollegeManagementSystem
3e476335cfbfb9a049e09f474c7ec885f69a9df3 a38852979f7e27ae67b610dce5979500ef8ebe01

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
vuldb.com: https://vuldb.com/vuln/368873 vuldb.com: https://vuldb.com/vuln/368873/cti vuldb.com: https://vuldb.com/cve/CVE-2026-11335 vuldb.com: https://vuldb.com/submit/832564 github.com: https://github.com/tittuvarghese/CollegeManagementSystem/issues/4 github.com: https://github.com/tittuvarghese/CollegeManagementSystem/

Credits

๐Ÿ” songlan (VulDB User) VulDB CNA Team