Vulnerabilities > Phpgurukul

DATE CVE VULNERABILITY TITLE RISK
2022-06-29 CVE-2022-31897 Cross-site Scripting vulnerability in PHPgurukul ZOO Management System 1.0
SourceCodester Zoo Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via public_html/register_visitor?msg=.
network
low complexity
phpgurukul CWE-79
6.1
2022-06-16 CVE-2022-31382 SQL Injection vulnerability in PHPgurukul Directory Management System 1.0
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the searchdata parameter in search-dirctory.php.
network
low complexity
phpgurukul CWE-89
critical
9.8
2022-06-16 CVE-2022-31383 SQL Injection vulnerability in PHPgurukul Directory Management System 1.0
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in view-directory.php.
network
low complexity
phpgurukul CWE-89
critical
9.8
2022-06-16 CVE-2022-31384 SQL Injection vulnerability in PHPgurukul Directory Management System 1.0
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the fullname parameter in add-directory.php.
network
low complexity
phpgurukul CWE-89
critical
9.8
2022-06-16 CVE-2022-31914 Cross-site Scripting vulnerability in PHPgurukul ZOO Management System 1.0
Zoo Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via zms/admin/public_html/save_animal?an_id=24.
network
low complexity
phpgurukul CWE-79
5.4
2022-06-14 CVE-2022-30930 Cross-Site Request Forgery (CSRF) vulnerability in PHPgurukul Tourism Management System 3.2
Tourism Management System Version: V 3.2 is affected by: Cross Site Request Forgery (CSRF).
network
low complexity
phpgurukul CWE-352
4.3
2022-05-26 CVE-2021-4232 Cross-site Scripting vulnerability in PHPgurukul ZOO Management System 1.0
A vulnerability classified as problematic has been found in Zoo Management System 1.0.
network
low complexity
phpgurukul CWE-79
6.1
2022-05-23 CVE-2022-29004 Cross-site Scripting vulnerability in PHPgurukul E-Diary Management System 1.0
Diary Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Name parameter in search-result.php.
network
low complexity
phpgurukul CWE-79
6.1
2022-05-23 CVE-2022-29005 Cross-site Scripting vulnerability in PHPgurukul Online Birth Certificate System 1.2
Multiple cross-site scripting (XSS) vulnerabilities in the component /obcs/user/profile.php of Online Birth Certificate System v1.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the fname or lname parameters.
network
low complexity
phpgurukul CWE-79
6.1
2022-05-23 CVE-2022-1816 Cross-site Scripting vulnerability in PHPgurukul ZOO Management System 1.0
A vulnerability, which was classified as problematic, has been found in Zoo Management System 1.0.
network
low complexity
phpgurukul CWE-79
5.4