CVE-2026-63237
MEDIUM SEVERITYCVSS Score & Metrics
Base Score
4.8 / 10
Vector String
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
Vulnerability Description
A TOTP two-factor authentication bypass vulnerability in
Koollab LMS allowed an
attacker to supply a client-controlled seed to generate a matching one-time
password and bypass the second authentication factor, potentially enabling
unauthorised access to administrator accounts.
Koollab LMS allowed an
attacker to supply a client-controlled seed to generate a matching one-time
password and bypass the second authentication factor, potentially enabling
unauthorised access to administrator accounts.
Vulnerability Details
Published Date
Last Modified
Source
NVD
Vendor
Three Learning
Product
Koollab LMS
Discussion (0)
Add Comment
No comments yet. Be the first!