Vulnerabilities > Phpgurukul > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-12-13 CVE-2021-44966 SQL Injection vulnerability in PHPgurukul Employee Record Management System 1.2
SQL injection bypass authentication vulnerability in PHPGURUKUL Employee Record Management System 1.2 via index.php.
network
low complexity
phpgurukul CWE-89
critical
9.8
2021-12-01 CVE-2021-43451 SQL Injection vulnerability in PHPgurukul Employee Record Management System 1.2
SQL Injection vulnerability exists in PHPGURUKUL Employee Record Management System 1.2 via the Email POST parameter in /forgetpassword.php.
network
low complexity
phpgurukul CWE-89
critical
9.8
2021-10-13 CVE-2021-42224 SQL Injection vulnerability in PHPgurukul Ifsc Code Finder 1.0
SQL Injection vulnerability exists in IFSC Code Finder Project 1.0 via the searchifsccode POST parameter in /search.php.
network
low complexity
phpgurukul CWE-89
critical
9.8
2021-07-22 CVE-2021-26765 SQL Injection vulnerability in PHPgurukul Student Record System 4.0
SQL injection vulnerability in PHPGurukul Student Record System 4.0 allows remote attackers to execute arbitrary SQL statements, via the sid parameter to edit-sub.php.
network
low complexity
phpgurukul CWE-89
critical
9.8
2021-07-20 CVE-2020-35427 SQL Injection vulnerability in PHPgurukul Employee Record Management System 1.1
SQL injection vulnerability in PHPGurukul Employee Record Management System 1.1 allows remote attackers to execute arbitrary SQL commands and bypass authentication.
network
low complexity
phpgurukul CWE-89
critical
9.8
2021-05-26 CVE-2021-33470 SQL Injection vulnerability in PHPgurukul Covid19 Testing Management System 1.0
COVID19 Testing Management System 1.0 is vulnerable to SQL Injection via the admin panel.
network
low complexity
phpgurukul CWE-89
critical
9.8
2021-02-17 CVE-2021-26809 Unrestricted Upload of File with Dangerous Type vulnerability in PHPgurukul CAR Rental Portal 2.0
PHPGurukul Car Rental Project version 2.0 suffers from a remote shell upload vulnerability in changeimage1.php.
network
low complexity
phpgurukul CWE-434
critical
9.8
2021-02-15 CVE-2021-26822 SQL Injection vulnerability in PHPgurukul Teachers Record Management System 1.0
Teachers Record Management System 1.0 is affected by a SQL injection vulnerability in 'searchteacher' POST parameter in search-teacher.php.
network
low complexity
phpgurukul CWE-89
critical
9.8
2020-11-16 CVE-2020-25952 SQL Injection vulnerability in PHPgurukul User Registration & Login and User Management System 2.1
SQL injection vulnerability in PHPGurukul User Registration & Login and User Management System With admin panel 2.1 allows remote attackers to execute arbitrary SQL commands and bypass authentication.
network
low complexity
phpgurukul CWE-89
critical
9.8
2020-08-20 CVE-2020-23936 SQL Injection vulnerability in PHPgurukul Vehicle Parking Management System 1.0
PHPGurukul Vehicle Parking Management System 1.0 is vulnerable to Authentication Bypass via "Username: admin'# && Password: (Write Something)".
network
low complexity
phpgurukul CWE-89
critical
9.8