exploit-db-mirror/exploits/php/webapps/29615.txt
Offensive Security d304cc3d3e DB: 2017-11-24
116602 new exploits

Too many to list!
2017-11-24 20:56:23 +00:00

11 lines
No EOL
514 B
Text

source: http://www.securityfocus.com/bid/22611/info
Powerschool is prone to an information-disclosure vulnerability because the application discloses information about administrative session variables.
An attacker can exploit these issue to obtain sensitive information that may aid in other attacks.
This issue affects Powerschool 4.3.6; other versions may also be affected.
UPDATE: Powerschool 5.1.2 is also reportedly affected by this issue, in a limited fashion.
http://www.example.com/admin/.js