Vulnerabilities > Phpgurukul
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-07-10 | CVE-2023-36940 | Cross-site Scripting vulnerability in PHPgurukul Online Fire Reporting System 1.2 Cross Site Scripting (XSS) vulnerability in PHPGurukul Online Fire Reporting System Using PHP and MySQL v.1.2 allows attackers to execute arbitrary code via a crafted payload injected into the search field. | 4.8 |
2023-07-10 | CVE-2023-36375 | Cross-site Scripting vulnerability in PHPgurukul Hostel Management System 2.1 Cross Site Scripting vulnerability in Hostel Management System v2.1 allows an attacker to execute arbitrary code via a crafted payload to the Guardian name, Guardian relation, complimentary address, city, permanent address, and city parameters in the Book Hostel & Room Details page. | 5.4 |
2023-07-10 | CVE-2023-36376 | Cross-site Scripting vulnerability in PHPgurukul Hostel Management System 2.1 Cross-Site Scripting (XSS) vulnerability in Hostel Management System v.2.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the add course section. | 4.8 |
2023-06-28 | CVE-2023-34647 | Cross-site Scripting vulnerability in PHPgurukul Hostel Management System 1.0 PHPgurukl Hostel Management System v.1.0 is vulnerable to Cross Site Scripting (XSS). | 6.1 |
2023-06-28 | CVE-2023-34652 | Cross-site Scripting vulnerability in PHPgurukul Hostel Management System 1.0 PHPgurukl Hostel Management System v.1.0 is vulnerable to Cross Site Scripting (XSS) via Add New Course. | 6.1 |
2023-06-26 | CVE-2023-33580 | Cross-site Scripting vulnerability in PHPgurukul Student Study Center Management System 1.0 Phpgurukul Student Study Center Management System V1.0 is vulnerable to Cross Site Scripting (XSS) in the "Admin Name" field on Admin Profile page. | 4.8 |
2023-06-15 | CVE-2023-34666 | Cross-site Scripting vulnerability in PHPgurukul Cyber Cafe Management System 1.0 Cross-site scripting (XSS) vulnerability in Phpgurukul Cyber Cafe Management System 1.0 allows remote attackers to inject arbitrary web script or HTML via the admin username parameter. | 6.1 |
2023-06-15 | CVE-2023-3275 | Unspecified vulnerability in PHPgurukul Rail Pass Management System 1.0 A vulnerability classified as critical was found in PHPGurukul Rail Pass Management System 1.0. | 9.8 |
2023-05-23 | CVE-2023-33338 | SQL Injection vulnerability in PHPgurukul OLD AGE Home Management System 1.0 Old Age Home Management 1.0 is vulnerable to SQL Injection via the username parameter. | 9.8 |
2023-05-11 | CVE-2023-31498 | Session Fixation vulnerability in PHPgurukul Hospital Management System 4.0 A privilege escalation issue was found in PHP Gurukul Hospital Management System In v.4.0 allows a remote attacker to execute arbitrary code and access sensitive information via the session token parameter. | 9.8 |