Back

HIGH

Ventem|e-School - Missing Authorization

Published Jul 30, 2025

Description

The e-School from Ventem has a Missing Authorization vulnerability, allowing remote attackers with regular privilege to access administrator functions, including creating, modifying, and deleting accounts. They can even escalate any account to system administrator privilege.

Affected products

Remediation

Vendor solution

If your school runs system on-premises, please contact the vendor to confirm the update status or consider restricting access to the campus network only

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner twcert
Published Jul 30, 2025
Updated Jul 30, 2025
Reserved Jul 30, 2025
CISA Vulnrichment
Updated Jul 30, 2025
NVD
Status Deferred
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner n/a
Published n/a
Updated n/a
Exploited since n/a
Link n/a