An issue in Online Diagnostic Lab Management System 1.0 allows a remote attacker to gain control of a Staff user account via a crafted POST request using the id, email, password, and cpass parameters.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Online_diagnostic_lab_management_system | Oretnom23 | 1.0 (including) | 1.0 (including) |