Phpgurukul
Phpgurukul Online Shopping Portal: vulnerabilidades y CVE
Phpgurukul Online Shopping Portal tiene 43 vulnerabilidades publicadas, 17 de ellas en los últimos 12 meses. 4 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE43
Últimos 12 meses17
Críticas4
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-5641 | Baja (2.1) | 0.32% | — | 6 abr 2026 | A vulnerability was found in PHPGurukul Online Shopping Portal Project 2.1. The impacted element is an unknown function of the file /admin/update-image1.php of the component Parameter Handler. The manipulation of the… |
| CVE-2026-5640 | Baja (2.1) | 0.32% | — | 6 abr 2026 | A vulnerability has been found in PHPGurukul Online Shopping Portal Project 2.1. The affected element is an unknown function of the file /admin/update-image2.php of the component Parameter Handler. The manipulation of… |
| CVE-2026-5639 | Baja (2.1) | 0.32% | — | 6 abr 2026 | A flaw has been found in PHPGurukul Online Shopping Portal Project 2.1. Impacted is an unknown function of the file /admin/update-image3.php of the component Parameter Handler. Executing a manipulation of the argument… |
| CVE-2026-5636 | Baja (2.1) | 0.32% | — | 6 abr 2026 | A weakness has been identified in PHPGurukul Online Shopping Portal Project 2.1. This affects an unknown part of the file /cancelorder.php of the component Parameter Handler. This manipulation of the argument oid causes… |
| CVE-2026-5635 | Baja (2.1) | 0.32% | — | 6 abr 2026 | A security flaw has been discovered in PHPGurukul Online Shopping Portal Project 2.1. Affected by this issue is some unknown functionality of the file /categorywise-products.php of the component Parameter Handler. The… |
| CVE-2026-5606 | Media (5.3) | 0.32% | — | 6 abr 2026 | A security flaw has been discovered in PHPGurukul Online Shopping Portal Project 2.1. The affected element is an unknown function of the file /order-details.php of the component Parameter Handler. The manipulation of… |
| CVE-2026-5583 | Baja (2.1) | 0.32% | — | 5 abr 2026 | A security vulnerability has been detected in PHPGurukul Online Shopping Portal Project 2.1. This affects an unknown part of the file /my-profile.php of the component Parameter Handler. The manipulation of the argument… |
| CVE-2026-5560 | Baja (2.1) | 0.32% | — | 5 abr 2026 | A vulnerability was found in PHPGurukul Online Shopping Portal Project 2.1. The impacted element is an unknown function of the file /payment-method.php of the component Parameter Handler. Performing a manipulation of… |
| CVE-2026-5558 | Baja (2.1) | 0.32% | — | 5 abr 2026 | A flaw has been found in PHPGurukul PHPGurukul Online Shopping Portal Project up to 2.1. Impacted is an unknown function of the file /pending-orders.php of the component Parameter Handler. This manipulation of the… |
| CVE-2026-5552 | Baja (2.1) | 0.32% | — | 5 abr 2026 | A weakness has been identified in PHPGurukul Online Shopping Portal Project 2.1. This issue affects some unknown processing of the file /sub-category.php of the component Parameter Handler. This manipulation of the… |
| CVE-2025-65647 | Media (4.3) | 0.24% | — | 25 nov 2025 | Insecure Direct Object Reference (IDOR) in the Track order function in PHPGURUKUL Online Shopping Portal 2.1 allows information disclosure via the oid parameter. |
| CVE-2024-44664 | Media (6.5) | 0.24% | — | 17 nov 2025 | PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the name, summary, review, quality, price, and value parameters in product-details.php. |
| CVE-2024-44661 | Media (5.4) | 0.22% | — | 17 nov 2025 | PHPGurukul Online Shopping Portal 2.0 is vulnerable to Cross Site Scripting (XSS) via the quantity parameter in my-cart.php. |
| CVE-2024-44663 | Media (6.5) | 0.24% | — | 17 nov 2025 | PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the product parameter in search-result.php. |
| CVE-2024-44662 | Media (6.5) | 0.24% | — | 17 nov 2025 | PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the username parameter in the admin page. |
| CVE-2024-44660 | Media (6.5) | 0.24% | — | 17 nov 2025 | PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the fullname, emailid, and contactno parameters in login.php. |
| CVE-2024-44659 | Crítica (9.8) | 0.41% | — | 17 nov 2025 | PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the email parameter in forgot-password.php. |
| CVE-2025-52074 | Media (6.1) | 0.23% | — | 12 sept 2025 | PHPGURUKUL Online Shopping Portal 2.1 is vulnerable to Cross Site Scripting (XSS) due to lack of input sanitization in the quantity parameter when adding a product to the cart. |
| CVE-2025-57576 | Media (5.4) | 0.21% | — | 4 sept 2025 | PHPGurukul Online Shopping Portal 2.1 is vulnerable to Cross Site Scripting (XSS) in /admin/updateorder.php. |
| CVE-2025-57148 | Crítica (9.1) | 0.47% | — | 3 sept 2025 | phpgurukul Online Shopping Portal 2.0 is vulnerable to Arbitrary File Upload in /admin/insert-product.php, due to the lack of extension validation. |
| CVE-2025-5367 | Media (6.9) | 0.48% | — | 31 may 2025 | A vulnerability was found in PHPGurukul Online Shopping Portal Project 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /category.php. The manipulation of the argument Product… |
| CVE-2025-5079 | Media (5.5) | 0.51% | — | 22 may 2025 | A flaw has been found in PHPGurukul/Campcodes Online Shopping Portal 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/updateorder.php. Executing manipulation of the argument remark can… |
| CVE-2025-5078 | Media (5.5) | 0.55% | — | 22 may 2025 | A vulnerability was detected in PHPGurukul/Campcodes Online Shopping Portal 1.0. Affected is an unknown function of the file /admin/subcategory.php. Performing manipulation of the argument Category results in sql… |
| CVE-2025-1855 | Media (5.3) | 0.52% | — | 3 mar 2025 | A vulnerability was found in PHPGurukul Online Shopping Portal 2.1. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /product-details.php. The manipulation of the… |
| CVE-2025-1578 | Media (5.3) | 0.42% | — | 23 feb 2025 | A vulnerability, which was classified as critical, was found in PHPGurukul/Campcodes Online Shopping Portal 2.1. This affects an unknown part of the file /search-result.php. The manipulation of the argument Product… |
| CVE-2024-10768 | Media (5.3) | 0.39% | — | 4 nov 2024 | A vulnerability classified as problematic was found in PHPGurukul Online Shopping Portal 2.0. This vulnerability affects unknown code of the file… |
| CVE-2024-10757 | Media (5.3) | 0.43% | — | 4 nov 2024 | A vulnerability, which was classified as problematic, has been found in PHPGurukul Online Shopping Portal 2.0. Affected by this issue is some unknown functionality of the file… |
| CVE-2024-10756 | Media (5.3) | 0.40% | — | 4 nov 2024 | A vulnerability classified as problematic was found in PHPGurukul Online Shopping Portal 2.0. Affected by this vulnerability is an unknown functionality of the file… |
| CVE-2024-10755 | Media (5.3) | 0.40% | — | 4 nov 2024 | A vulnerability classified as problematic has been found in PHPGurukul Online Shopping Portal 2.0. Affected is an unknown function of the file… |
| CVE-2024-10754 | Media (5.3) | 0.40% | — | 4 nov 2024 | A vulnerability was found in PHPGurukul Online Shopping Portal 2.0. It has been rated as problematic. This issue affects some unknown processing of the file… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
Otros productos de Phpgurukul
Hospital Management System · 62ZOO Management System · 37ART Gallery Management System · 36Online Fire Reporting System · 32Complaint Management System · 32Student Record System · 29Beauty Parlour Management System · 28User Registration & Login AND User Management System · 25Land Record System · 25Pre-school Enrollment System · 25Vehicle Parking Management System · 24Dairy Farm Shop Management System · 24