{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/vendors/soarkey/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":7.3,"id":"CVE-2026-82621"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["StudentManagement (\u003c= e08f7f1d5015af407aa4cca0ada3dea189b4937e)","学生信息管理系统 (\u003c= e08f7f1d5015af407aa4cca0ada3dea189b4937e)"],"_cs_severities":["high"],"_cs_tags":["web-application","vulnerability","authentication-bypass"],"_cs_type":"advisory","_cs_vendors":["Soarkey"],"content_html":"\u003cp\u003eA critical authorization bypass vulnerability has been identified in Soarkey StudentManagement and the Student Information Management System (学生信息管理系统), specifically impacting all versions up to commit e08f7f1d5015af407aa4cca0ada3dea189b4937e. The flaw is located in the AdminDao.doGet function within the Administrative Servlet component (code/src/service/AdminDao.java). An attacker can perform remote exploitation by sending a crafted HTTP request that manipulates the 'action' argument, effectively circumventing authentication and authorization controls to access restricted administrative functions. This vulnerability is particularly concerning as functional exploit code is publicly available, allowing for ease of exploitation by unauthorized actors. The vendor has been notified of the issue but has not yet provided a patch. Defenders should monitor for anomalous HTTP requests targeting administrative endpoints that utilize the 'action' parameter.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability allows unauthenticated remote attackers to gain unauthorized access to administrative functionality within the student management platform. This could lead to the unauthorized modification, deletion, or exfiltration of sensitive student data, potentially impacting the entire user base of the affected academic or administrative institution.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMonitor web server access logs for anomalous requests containing the 'action' parameter directed toward the AdminDao servlet, specifically looking for attempts to bypass login or gain unauthorized privileges.\u003c/li\u003e\n\u003cli\u003eImplement strict ingress filtering for the application's administrative web interface to limit access to known, trusted IP ranges until a vendor patch is available.\u003c/li\u003e\n\u003cli\u003eAudit existing deployments of Soarkey StudentManagement to confirm if the current version is vulnerable (up to commit e08f7f1d5015af407aa4cca0ada3dea189b4937e).\u003c/li\u003e\n\u003cli\u003eGiven the public availability of the exploit, initiate a review of logs associated with the application to identify any signs of historical unauthorized administrative access.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-31T07:15:39Z","date_published":"2026-08-31T07:15:39Z","id":"https://feed.craftedsignal.io/briefs/2026-08-soarkey-auth-bypass/","summary":"A vulnerability in the Administrative Servlet of Soarkey StudentManagement and 学生信息管理系统 allows remote attackers to bypass authorization via manipulation of the action argument in AdminDao.doGet.","title":"Authorization Bypass in Soarkey StudentManagement","url":"https://feed.craftedsignal.io/briefs/2026-08-soarkey-auth-bypass/"}],"language":"en","title":"CraftedSignal Threat Feed - Soarkey","version":"https://jsonfeed.org/version/1.1"}