Vulnerabilities > Phpgurukul

DATE CVE VULNERABILITY TITLE RISK
2020-01-07 CVE-2020-5307 SQL Injection vulnerability in PHPgurukul Dairy Farm Shop Management System 1.0
PHPGurukul Dairy Farm Shop Management System 1.0 is vulnerable to SQL injection, as demonstrated by the username parameter in index.php, the category and CategoryCode parameters in add-category.php, the CompanyName parameter in add-company.php, and the ProductName and ProductPrice parameters in add-product.php.
network
low complexity
phpgurukul CWE-89
critical
9.8
2020-01-06 CVE-2020-5192 SQL Injection vulnerability in PHPgurukul Hospital Management System 4.0
PHPGurukul Hospital Management System in PHP v4.0 suffers from multiple SQL injection vulnerabilities: multiple pages and parameters are not validating user input, and allow for the application's database and information to be fully compromised.
network
low complexity
phpgurukul CWE-89
8.8
2020-01-06 CVE-2020-5191 Cross-site Scripting vulnerability in PHPgurukul Hospital Management System 4.0
PHPGurukul Hospital Management System in PHP v4.0 suffers from multiple Persistent XSS vulnerabilities.
network
low complexity
phpgurukul CWE-79
6.1