Serosoft Solutions Academia SIS EagleR Insecure Direct Object Reference Vulnerability

Vulnerability

A vulnerability allowing Insecure Direct Object References (IDOR) has been identified in Serosoft Solutions Pvt Ltd's Academia Student Information System (SIS) EagleR version 1.0.118. This vulnerability allows attackers to access sensitive user information by sending a crafted API request to the endpoint '/getStudentAllDetailsById?studentId=XX'.

Impact

Exploitation of this vulnerability allows unauthorized access to sensitive user information.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
6.2
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.