← Back

Phpgurukul

phpgurukul

1,063 CVEs • 87 products

Products (87)

Click to collapse
Toggle
Small Crm
small_crm
News Portal
news_portal
Job Portal
job_portal

CVEs (1,063)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Phpgurukul
1Directory Management System
Jul 9, 2026
Jun 16, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in view-directory.php.
1Phpgurukul
1Directory Management System
Jul 9, 2026
Jun 16, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the searchdata parameter in search-dirctory.php.
1Phpgurukul
1Zoo Management System
Jun 17, 2026
Jun 16, 2022
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
Zoo Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via zms/admin/public_html/save_animal?an_id=24.
1Phpgurukul
1Tourism Management System
Jun 17, 2026
Jun 14, 2022
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
Tourism Management System Version: V 3.2 is affected by: Cross Site Request Forgery (CSRF).
1Phpgurukul
1Zoo Management System
Jun 17, 2026
May 26, 2022
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
A vulnerability classified as problematic has been found in Zoo Management System 1.0. Affected is an unknown function of the file admin/manage-ticket.php. The manipulation with the input <script>alert(1)</script> leads...Show more
A vulnerability classified as problematic has been found in Zoo Management System 1.0. Affected is an unknown function of the file admin/manage-ticket.php. The manipulation with the input <script>alert(1)</script> leads to cross site scripting. It is possible to launch the attack remotely.Show less
1Phpgurukul
1Online Birth Certificate System
Jul 9, 2026
May 23, 2022
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Multiple cross-site scripting (XSS) vulnerabilities in the component /obcs/user/profile.php of Online Birth Certificate System v1.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected...Show more
Multiple cross-site scripting (XSS) vulnerabilities in the component /obcs/user/profile.php of Online Birth Certificate System v1.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the fname or lname parameters.Show less
1Phpgurukul
1E Diary Management System
Jul 9, 2026
May 23, 2022
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Diary Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Name parameter in search-result.php.
1Phpgurukul
1Zoo Management System
Jun 17, 2026
May 23, 2022
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
A vulnerability, which was classified as problematic, has been found in Zoo Management System 1.0. Affected by this issue is /zoo/admin/public_html/view_accounts?type=zookeeper of the content module. The manipulation of...Show more
A vulnerability, which was classified as problematic, has been found in Zoo Management System 1.0. Affected by this issue is /zoo/admin/public_html/view_accounts?type=zookeeper of the content module. The manipulation of the argument admin_name with the input <script>alert(1)</script> leads to an authenticated cross site scripting. Exploit details have been disclosed to the public.Show less
1Phpgurukul
1Online Banquet Booking System
Jun 17, 2026
May 20, 2022
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
A Cross-Site Request Forgery (CSRF) in Online Banquet Booking System v1.0 allows attackers to change admin credentials via a crafted POST request.
1Phpgurukul
1Cyber Cafe Management System
Jun 17, 2026
May 11, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Cyber Cafe Management System Project v1.0 allows attackers to bypass authentication.
1Phpgurukul
1Bus Pass Management System
Jun 17, 2026
May 11, 2022
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
An insecure direct object reference (IDOR) vulnerability in the viewid parameter of Bus Pass Management System v1.0 allows attackers to access sensitive information.
1Phpgurukul
1Dairy Farm Shop Management System
Jun 17, 2026
May 11, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Dairy Farm Shop Management System v1.0 allows attackers to bypass authentication.
1Phpgurukul
1Directory Management System
Jun 17, 2026
May 11, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Directory Management System v1.0 allows attackers to bypass authentication.
1Phpgurukul
1Zoo Management System
Jun 17, 2026
Apr 8, 2022
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
Zoo Management System v1.0 was discovered to contain a SQL injection vulnerability at /public_html/animals via the class_id parameter.
1Phpgurukul
1Zoo Management System
Jun 17, 2026
Apr 8, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Zoo Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /public_html/apply_vacancy. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
1Phpgurukul
1Online Shopping Portal
Jun 17, 2026
Feb 18, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Online Shopping Portal v3.1 was discovered to contain multiple time-based SQL injection vulnerabilities via the email and contactno parameters.
1Phpgurukul
1Hospital Management System
Jun 17, 2026
Feb 15, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Hospital Management System v4.0 was discovered to contain a blind SQL injection vulnerability via the register function in func2.php.
1Phpgurukul
1Dairy Farm Shop Management System
Jun 17, 2026
Feb 11, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Dairy Farm Shop Management System v1.0 was discovered to contain hardcoded credentials in the source code which allows attackers access to the control panel if compromised.
1Phpgurukul
1Hospital Management System
Jun 17, 2026
Feb 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Hospital Management System v4.0 was discovered to contain a SQL injection vulnerability in /Hospital-Management-System-master/contact.php via the txtMsg parameters.
1Phpgurukul
1Hospital Management System
Jun 17, 2026
Jan 31, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Hospital Management System v4.0 was discovered to contain a SQL injection vulnerability in /Hospital-Management-System-master/func.php via the email parameter.