Discovered a vulnerability on my college website that allowed me to access critical directories containing important user-related information intended for authorized users only. It is fall into P3 category which is possibly chain-up into severe vulnerability.
Impact :-
A data breach on my college website, exploited using the CMSmap tool in Kali Linux, could have severe consequences. This tool, designed to scan and detect vulnerabilities in CMS-based websites, could expose sensitive user information, including login credentials, personal data, and administrative access. Such a breach could lead to unauthorized modifications, data leaks, or even complete website defacement. The impact extends beyond just data loss—it can erode user trust, violate privacy policies, and potentially result in legal and financial repercussions for the institution. Addressing these vulnerabilities promptly is crucial to maintaining security and preventing exploitation.