Total
4 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2025-1902 | 1 Phpgurukul | 1 Student Record System | 2025-03-06 | 7.5 HIGH | 7.3 HIGH |
A vulnerability was found in PHPGurukul Student Record System 3.2. It has been declared as critical. This vulnerability affects unknown code of the file /password-recovery.php. The manipulation of the argument emailid leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | |||||
CVE-2021-26765 | 1 Phpgurukul | 1 Student Record System | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
SQL injection vulnerability in PHPGurukul Student Record System 4.0 allows remote attackers to execute arbitrary SQL statements, via the sid parameter to edit-sub.php. | |||||
CVE-2021-26764 | 1 Phpgurukul | 1 Student Record System | 2024-11-21 | 6.5 MEDIUM | 8.8 HIGH |
SQL injection vulnerability in PHPGurukul Student Record System v 4.0 allows remote attackers to execute arbitrary SQL statements, via the id parameter to edit-std.php. | |||||
CVE-2021-26762 | 1 Phpgurukul | 1 Student Record System | 2024-11-21 | 6.5 MEDIUM | 8.8 HIGH |
SQL injection vulnerability in PHPGurukul Student Record System 4.0 allows remote attackers to execute arbitrary SQL statements, via the cid parameter to edit-course.php. |