← Back

Phpgurukul

phpgurukul

1,063 CVEs • 87 products

Products (87)

Click to collapse
Toggle
Small Crm
small_crm
News Portal
news_portal
Job Portal
job_portal

CVEs (1,063)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Phpgurukul
1Daily Expense Tracker System
Jun 17, 2026
Jan 29, 2021
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS via the add-expense.php Item parameter.
1Phpgurukul
1Daily Expense Tracker System
Jun 17, 2026
Jan 29, 2021
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS via the user-profile.php Full Name field.
1Phpgurukul
1Hospital Management System
Jun 17, 2026
Jan 7, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
PHPGURUKUL Hospital Management System V 4.0 does not properly restrict access to admin/dashboard.php, which allows attackers to access all data of users, doctors, patients, change admin password, get appointment history...Show more
PHPGURUKUL Hospital Management System V 4.0 does not properly restrict access to admin/dashboard.php, which allows attackers to access all data of users, doctors, patients, change admin password, get appointment history and access all session logs.Show less
1Phpgurukul
1Online Marriage Registration System
Jun 17, 2026
Dec 21, 2020
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
The Online Marriage Registration System 1.0 post parameter "searchdata" in the user/search.php request is vulnerable to Time Based Sql Injection.
1Phpgurukul
1User Registration & Login And User Management System
Jun 17, 2026
Nov 18, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Cross Site Scripting (XSS) vulnerability in the Registration page of the admin panel in PHPGurukul User Registration & Login and User Management System With admin panel 2.1.
1Phpgurukul
1Tourism Management System
Jun 17, 2026
Nov 17, 2020
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
An Arbitrary File Upload is discovered in SourceCodester Tourism Management System 1.0 allows the user to conduct remote code execution via admin/create-package.php vulnerable page.
1Phpgurukul
1User Registration & Login And User Management System
Jun 17, 2026
Nov 16, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
SQL injection vulnerability in PHPGurukul User Registration & Login and User Management System With admin panel 2.1 allows remote attackers to execute arbitrary SQL commands and bypass authentication.
1Phpgurukul
1Hospital Management System
Jun 17, 2026
Oct 8, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
PHPGurukul hospital-management-system-in-php 4.0 allows XSS via admin/patient-search.php, doctor/search.php, book-appointment.php, doctor/appointment-history.php, or admin/appointment-history.php.
1Phpgurukul
1Hostel Management System
Jun 17, 2026
Oct 8, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
PHPGurukul hostel-management-system 2.1 allows XSS via Guardian Name, Guardian Relation, Guardian Contact no, Address, or City.
1Phpgurukul
1Zoo Management System
Jul 9, 2026
Sep 22, 2020
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
PHPGURUKUL Zoo Management System Using PHP and MySQL version 1.0 is affected by: SQL Injection via zms/animal-detail.php.
1Phpgurukul
1Vehicle Parking Management System
Jun 17, 2026
Aug 20, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
PHPGurukul Vehicle Parking Management System 1.0 is vulnerable to Authentication Bypass via "Username: admin'# && Password: (Write Something)".
1Phpgurukul
1Online Course Registration
Jun 17, 2026
Apr 28, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Online Course Registration 2.0 has multiple SQL injections that would can lead to a complete database compromise and authentication bypass in the login pages: admin/change-password.php, admin/check_availability.php, admi...Show more
Online Course Registration 2.0 has multiple SQL injections that would can lead to a complete database compromise and authentication bypass in the login pages: admin/change-password.php, admin/check_availability.php, admin/index.php, change-password.php, check_availability.php, includes/header.php, index.php, and pincode-verification.php.Show less
1Phpgurukul
1Job Portal
Jun 17, 2026
Mar 8, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
An unauthenticated file upload vulnerability has been identified in admin/gallery.php in PHPGurukul Job Portal 1.0. The vulnerability could be exploited by an unauthenticated remote attacker to upload content to the serv...Show more
An unauthenticated file upload vulnerability has been identified in admin/gallery.php in PHPGurukul Job Portal 1.0. The vulnerability could be exploited by an unauthenticated remote attacker to upload content to the server, including PHP files, which could result in command execution.Show less
1Phpgurukul
1Online Book Store
Jun 17, 2026
Mar 8, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
An unauthenticated file upload vulnerability has been identified in admin_add.php in PHPGurukul Online Book Store 1.0. The vulnerability could be exploited by an unauthenticated remote attacker to upload content to the s...Show more
An unauthenticated file upload vulnerability has been identified in admin_add.php in PHPGurukul Online Book Store 1.0. The vulnerability could be exploited by an unauthenticated remote attacker to upload content to the server, including PHP files, which could result in command execution.Show less
1Phpgurukul
1Daily Expense Tracker System
Jun 17, 2026
Mar 5, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS, as demonstrated by the ExpenseItem or ExpenseCost parameter in manage-expense.php.
1Phpgurukul
1Daily Expense Tracker System
Jun 17, 2026
Mar 5, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to SQL injection, as demonstrated by the email parameter in index.php or register.php. The SQL injection allows to dump the MySQL database and to bypass the login...Show more
PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to SQL injection, as demonstrated by the email parameter in index.php or register.php. The SQL injection allows to dump the MySQL database and to bypass the login prompt.Show less
1Phpgurukul
1Car Rental Portal
Jun 17, 2026
Jan 14, 2020
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
PHPGurukul Car Rental Project v1.0 allows Remote Code Execution via an executable file in an upload of a new profile image.
1Phpgurukul
1Hospital Management System
Jun 17, 2026
Jan 14, 2020
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
PHPGurukul Hospital Management System in PHP v4.0 suffers from multiple reflected XSS vulnerabilities via the searchdata or Doctorspecialization parameter.
1Phpgurukul
1Dairy Farm Shop Management System
Jun 17, 2026
Jan 9, 2020
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
PHPGurukul Dairy Farm Shop Management System 1.0 is vulnerable to XSS, as demonstrated by the category and CategoryCode parameters in add-category.php, the CompanyName parameter in add-company.php, and the ProductName pa...Show more
PHPGurukul Dairy Farm Shop Management System 1.0 is vulnerable to XSS, as demonstrated by the category and CategoryCode parameters in add-category.php, the CompanyName parameter in add-company.php, and the ProductName parameter in add-product.php.Show less
1Phpgurukul
1Hostel Management System
Jun 17, 2026
Jan 8, 2020
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
PHPGurukul Hostel Management System v2.0 allows SQL injection via the id parameter in the full-profile.php file.