SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-86214

HIGH · CVSS 7.3 EPSS 0.39% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-06 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability in the Mstfakts College Management System allows for improper authentication through manipulation of the email argument in the Front-end/login.php file, which can be exploited remotely. This high-severity issue poses a significant risk to user accounts and data integrity, making it critical for institutions using this system to prioritize immediate remediation efforts. Organizations should assess their exposure and implement necessary security measures to mitigate potential attacks.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit
GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-86214
Severity
HIGH
CVSS
7.3
EPSS
0.39%

Original NVD Description

A vulnerability was determined in Mstfakts College-Management-System. Impacted is an unknown function of the file Front-end/login.php. This manipulation of the argument email causes improper authentication. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The project was informed of the problem early through an issue report but has not responded yet.