Vulnerabilities > Phpgurukul > ART Gallery Management System > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-01-12 CVE-2023-51978 SQL Injection vulnerability in PHPgurukul ART Gallery Management System 1.1
In PHPGurukul Art Gallery Management System v1.1, "Update Artist Image" functionality of "imageid" parameter is vulnerable to SQL Injection.
network
low complexity
phpgurukul CWE-89
6.5
2023-02-27 CVE-2023-23157 Cross-site Scripting vulnerability in PHPgurukul ART Gallery Management System 1.0
A stored cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the fullname parameter on the enquiry page.
network
low complexity
phpgurukul CWE-79
5.4
2023-02-27 CVE-2023-23158 Cross-site Scripting vulnerability in PHPgurukul ART Gallery Management System 1.0
A stored cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the message parameter on the enquiry page.
network
low complexity
phpgurukul CWE-79
5.4
2023-02-10 CVE-2023-23161 Cross-site Scripting vulnerability in PHPgurukul ART Gallery Management System 1.0
A reflected cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the artname parameter under ART TYPE option in the navigation bar.
network
low complexity
phpgurukul CWE-79
6.1