6.5
CVSSv3

CVE-2022-39196

Published: 05/09/2022 Updated: 06/05/2024
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Blackboard Learn 1.10.1 allows remote authenticated users to read unintended files by entering student credentials and then directly visiting a certain webapps/bbcms/execute/ URL. Note: The vendor disputes this stating this cannot be reproduced.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

blackboard blackboard learn 1.10.1

Github Repositories

Black board CMS Escalation of Privileges

CVE-2022-39196 Black board CMS Escalation of Privileges Blackboard Learn version 1101 allows remote authenticated users to read unintended files by entering student credentials and then directly visiting a certain webapps/bbcms/execute/ URL Additional Information Step 1: Use a student credentials privilege Username: ********** & Password: **********, to login Step