Vulnerabilities > Phpgurukul > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-10-09 CVE-2024-46237 Cross-site Scripting vulnerability in PHPgurukul Hospital Management System 4.0
PHPGurukul Hospital Management System 4.0 is vulnerable to Cross Site Scripting (XSS) via the patname, pataddress, and medhis parameters in doctor/add-patient.php and doctor/edit-patient.php.
network
low complexity
phpgurukul CWE-79
5.4
2024-09-05 CVE-2024-8471 Cross-site Scripting vulnerability in PHPgurukul JOB Portal 1.0
Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted.
network
low complexity
phpgurukul CWE-79
6.1
2024-09-05 CVE-2024-8472 Cross-site Scripting vulnerability in PHPgurukul JOB Portal 1.0
Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted.
network
low complexity
phpgurukul CWE-79
6.1
2024-09-05 CVE-2024-8473 Cross-site Scripting vulnerability in PHPgurukul JOB Portal 1.0
Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted.
network
low complexity
phpgurukul CWE-79
6.1
2024-08-12 CVE-2024-40481 Cross-site Scripting vulnerability in PHPgurukul OLD AGE Home Management System 1.0
A Stored Cross Site Scripting (XSS) vulnerability was found in "/admin/view-enquiry.php" in PHPGurukul Old Age Home Management System v1.0, which allows remote attackers to execute arbitrary code via the Contact Us page "message" parameter.
network
low complexity
phpgurukul CWE-79
5.4
2024-08-12 CVE-2024-40484 Cross-site Scripting vulnerability in PHPgurukul OLD AGE Home Management System 1.0
A Reflected Cross Site Scripting (XSS) vulnerability was found in "/oahms/search.php" in PHPGurukul Old Age Home Management System v1.0, which allows remote attackers to execute arbitrary code via the "searchdata" parameter.
network
low complexity
phpgurukul CWE-79
6.1
2024-08-06 CVE-2024-41333 Cross-site Scripting vulnerability in PHPgurukul Tourism Management System 2.0
A reflected cross-site scripting (XSS) vulnerability in Phpgurukul Tourism Management System v2.0 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload into the uname parameter.
network
low complexity
phpgurukul CWE-79
6.1
2024-02-23 CVE-2024-1822 Unspecified vulnerability in PHPgurukul Tourism Management System 1.0
A vulnerability classified as problematic has been found in PHPGurukul Tourism Management System 1.0.
network
low complexity
phpgurukul
6.1
2024-01-18 CVE-2024-0652 Unspecified vulnerability in PHPgurukul Company Visitor Management System 1.0
A vulnerability was found in PHPGurukul Company Visitor Management System 1.0.
network
low complexity
phpgurukul
4.8
2024-01-13 CVE-2024-0476 Cross-site Scripting vulnerability in PHPgurukul Blood Bank & Donor Management System 1.0
A vulnerability, which was classified as problematic, was found in Blood Bank & Donor Management 1.0.
network
low complexity
phpgurukul CWE-79
4.8