Vulnerabilities > Phpgurukul > Rail Pass Management System

DATE CVE VULNERABILITY TITLE RISK
2023-07-28 CVE-2023-31932 SQL Injection vulnerability in PHPgurukul Rail Pass Management System 1.0
Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the viewid parameter of the view-enquiry.php file.
network
low complexity
phpgurukul CWE-89
7.2
2023-07-28 CVE-2023-31933 SQL Injection vulnerability in PHPgurukul Rail Pass Management System 1.0
Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the editid parameter of the edit-pass-detail.php file.
network
low complexity
phpgurukul CWE-89
7.2
2023-07-28 CVE-2023-31934 Cross-site Scripting vulnerability in PHPgurukul Rail Pass Management System 1.0
Cross Site Scripting vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to obtain sensitive information via the adminname parameter of admin-profile.php.
network
low complexity
phpgurukul CWE-79
4.8
2023-07-28 CVE-2023-31935 Cross-site Scripting vulnerability in PHPgurukul Rail Pass Management System 1.0
Cross Site Scripting vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to obtain sensitive information via the emial parameter of admin-profile.php.
network
low complexity
phpgurukul CWE-79
4.8
2023-07-28 CVE-2023-31936 SQL Injection vulnerability in PHPgurukul Rail Pass Management System 1.0
Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the viewid parameter of the view-pass-detail.php file.
network
low complexity
phpgurukul CWE-89
7.2
2023-07-28 CVE-2023-31937 SQL Injection vulnerability in PHPgurukul Rail Pass Management System 1.0
Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the editid parameter of the edit-cateogry-detail.php file.
network
low complexity
phpgurukul CWE-89
7.2
2023-06-15 CVE-2023-3275 SQL Injection vulnerability in PHPgurukul Rail Pass Management System 1.0
A vulnerability classified as critical was found in PHPGurukul Rail Pass Management System 1.0.
network
low complexity
phpgurukul CWE-89
critical
9.8