Phpgurukul
Phpgurukul News Portal: vulnerabilidades y CVE
Phpgurukul News Portal tiene 17 vulnerabilidades publicadas, 12 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE17
Últimos 12 meses12
Críticas3
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-5840 | Baja (2) | 0.33% | — | 9 abr 2026 | A security flaw has been discovered in PHPGurukul News Portal Project 4.1. Impacted is an unknown function of the file /admin/check_availability.php. Performing a manipulation of the argument Username results in sql… |
| CVE-2026-5839 | Baja (2) | 0.33% | — | 9 abr 2026 | A vulnerability was identified in PHPGurukul News Portal Project 4.1. This issue affects some unknown processing of the file /admin/add-subcategory.php. Such manipulation of the argument sucatdescription leads to sql… |
| CVE-2026-5838 | Baja (2) | 0.33% | — | 9 abr 2026 | A vulnerability was determined in PHPGurukul News Portal Project 4.1. This vulnerability affects unknown code of the file /admin/add-subadmins.php. This manipulation of the argument sadminusername causes sql injection.… |
| CVE-2026-5837 | Media (5.5) | 0.41% | — | 9 abr 2026 | A vulnerability was found in PHPGurukul News Portal Project 4.1. This affects an unknown part of the file /news-details.php. The manipulation of the argument Comment results in sql injection. The attack can be launched… |
| CVE-2026-1424 | Baja (2) | 0.47% | — | 26 ene 2026 | A vulnerability was identified in PHPGurukul News Portal 1.0. This affects an unknown part of the component Profile Pic Handler. The manipulation leads to unrestricted upload. It is possible to initiate the attack… |
| CVE-2026-1142 | Baja (2.1) | 0.23% | — | 19 ene 2026 | A security flaw has been discovered in PHPGurukul News Portal 1.0. The impacted element is an unknown function. Performing a manipulation results in cross-site request forgery. The attack may be initiated remotely. The… |
| CVE-2026-1141 | Baja (2.1) | 0.34% | — | 19 ene 2026 | A vulnerability was identified in PHPGurukul News Portal 1.0. The affected element is an unknown function of the file /admin/add-subadmins.php of the component Add Sub-Admin Page. Such manipulation leads to improper… |
| CVE-2025-69992 | Crítica (9.8) | 0.59% | — | 13 ene 2026 | phpgurukul News Portal Project V4.1 has File Upload Vulnerability via upload.php, which enables the upload of files of any format to the server without identity authentication. |
| CVE-2025-69991 | Crítica (9.8) | 0.46% | — | 13 ene 2026 | phpgurukul News Portal Project V4.1 is vulnerable to SQL Injection in check_availablity.php. |
| CVE-2025-69990 | Crítica (9.1) | 0.45% | — | 13 ene 2026 | phpgurukul News Portal Project V4.1 has an Arbitrary File Deletion Vulnerability in remove_file.php. The parameter file can cause any file to be deleted. |
| CVE-2025-12616 | Baja (2.9) | 0.59% | — | 3 nov 2025 | A vulnerability was detected in PHPGurukul News Portal 1.0. The impacted element is an unknown function of the file /onps/settings.py. Performing a manipulation results in insertion of sensitive information into… |
| CVE-2025-12615 | Baja (1.3) | 0.42% | — | 3 nov 2025 | A security vulnerability has been detected in PHPGurukul News Portal 1.0. The affected element is an unknown function of the file /onps/settings.py. Such manipulation of the argument SECRET_KEY leads to use of… |
| CVE-2025-4880 | Media (6.9) | 0.58% | — | 18 may 2025 | A vulnerability has been found in PHPGurukul News Portal 4.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/aboutus.php. The manipulation of the argument… |
| CVE-2025-4874 | Media (6.9) | 0.58% | — | 18 may 2025 | A vulnerability was found in PHPGurukul News Portal Project 4.1 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/contactus.php. The manipulation of the argument… |
| CVE-2025-4873 | Media (6.9) | 0.58% | — | 18 may 2025 | A vulnerability has been found in PHPGurukul News Portal 4.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/index.php of the component Login. The manipulation… |
| CVE-2025-1859 | Media (6.9) | 0.49% | — | 3 mar 2025 | A vulnerability, which was classified as critical, has been found in PHPGurukul News Portal 4.1. This issue affects some unknown processing of the file /login.php. The manipulation of the argument id leads to sql… |
| CVE-2021-37808 | Media (5.9) | 1.8% | — | 27 oct 2021 | SQL Injection vulnerabilities exist in https://phpgurukul.com News Portal Project 3.1 via the (1) category, (2) subcategory, (3) sucatdescription, and (4) username parameters, the server response is about (N) seconds… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
Otros productos de Phpgurukul
Hospital Management System · 62Online Shopping Portal · 43ZOO Management System · 37ART Gallery Management System · 36Online Fire Reporting System · 32Complaint Management System · 32Student Record System · 29Beauty Parlour Management System · 28User Registration & Login AND User Management System · 25Land Record System · 25Pre-school Enrollment System · 25Dairy Farm Shop Management System · 24