CVE-2026-90517

A vulnerability was identified in PHPGurukul Bank Locker Management System 1.0. This affects an unknown function of the file /blms/view-assign-locker.php. The manipulation of the argument ltid leads to authorization bypass. The attack may be initiated remotely. The exploit is publicly available and might be used.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-13 12:17

Updated : 2026-09-14 20:56


NVD link : CVE-2026-90517

Mitre link : CVE-2026-90517

CVE.ORG link : CVE-2026-90517


JSON object : View

Products Affected

No product.

CWE
CWE-285

Improper Authorization

CWE-639

Authorization Bypass Through User-Controlled Key