Phpgurukul
Phpgurukul Student Record System: vulnerabilidades y CVE
Phpgurukul Student Record System tiene 29 vulnerabilidades publicadas, 11 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE29
Últimos 12 meses11
Críticas3
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-3403 | Baja (1.9) | 0.36% | — | 2 mar 2026 | A vulnerability was detected in PHPGurukul Student Record Management System 1.0. This issue affects some unknown processing of the file /edit-subject.php. Performing a manipulation of the argument Subject 1 results in… |
| CVE-2026-3402 | Baja (1.9) | 0.36% | — | 2 mar 2026 | A security vulnerability has been detected in PHPGurukul Student Record Management System up to 1.0. This vulnerability affects unknown code of the file /edit-course.php. Such manipulation of the argument Course Short… |
| CVE-2025-63955 | Alta (7.5) | 0.23% | — | 18 nov 2025 | A Cross-Site Request Forgery (CSRF) vulnerability in the manage-students.php component of PHPGurukul Student Record System v3.2 allows an attacker to trick an authenticated administrator into submitting a forged… |
| CVE-2024-55016 | Media (6.5) | 0.24% | — | 14 nov 2025 | PHPGurukul Student Record Management System 3.20 is vulnerable to SQL Injection via the id and password parameters in login.php. |
| CVE-2024-44640 | Media (6.5) | 0.24% | — | 14 nov 2025 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the course-short, course-full, and cdate parameters in add-course.php. |
| CVE-2024-44639 | Media (6.5) | 0.24% | — | 14 nov 2025 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the sub1, sub2, sub3, sub4, and course-short parameters in add-subject.php. |
| CVE-2024-44636 | Media (6.5) | 0.20% | — | 14 nov 2025 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the adminname and aemailid parameters in /admin-profile.php. |
| CVE-2024-44635 | Media (6.1) | 0.22% | — | 14 nov 2025 | PHPGurukul Student Record System 3.20 is vulnerable to Cross Site Scripting (XSS) via adminname and aemailid parameters in /admin-profile.php. |
| CVE-2024-44633 | Media (6.5) | 0.24% | — | 14 nov 2025 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the currentpassword parameter in change-password.php. |
| CVE-2024-44632 | Media (6.5) | 0.24% | — | 14 nov 2025 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the id and emailid parameters in password-recovery.php. |
| CVE-2024-44630 | Media (6.5) | 0.24% | — | 14 nov 2025 | Multiple parameters in register.php in PHPGurukul Student Record System 3.20 are vulnerable to SQL injection. These include: c-full, fname, mname,lname, gname, ocp, nation, mobno, email, board1, roll1, pyear1, board2,… |
| CVE-2025-6915 | Baja (2.1) | 0.40% | — | 30 jun 2025 | A vulnerability, which was classified as critical, has been found in PHPGurukul Student Record System 3.2. Affected by this issue is some unknown functionality of the file /register.php. The manipulation of the argument… |
| CVE-2025-6914 | Baja (2.1) | 0.40% | — | 30 jun 2025 | A vulnerability classified as critical was found in PHPGurukul Student Record System 3.2. Affected by this vulnerability is an unknown functionality of the file /edit-student.php. The manipulation of the argument… |
| CVE-2025-6913 | Baja (2.1) | 0.40% | — | 30 jun 2025 | A vulnerability classified as critical has been found in PHPGurukul Student Record System 3.2. Affected is an unknown function of the file /admin-profile.php. The manipulation of the argument aemailid leads to sql… |
| CVE-2025-6912 | Baja (2.1) | 0.40% | — | 30 jun 2025 | A vulnerability was found in PHPGurukul Student Record System 3.2. It has been rated as critical. This issue affects some unknown processing of the file /manage-students.php. The manipulation of the argument del leads… |
| CVE-2025-6911 | Baja (2.1) | 0.43% | — | 30 jun 2025 | A vulnerability was found in PHPGurukul Student Record System 3.2. It has been declared as critical. This vulnerability affects unknown code of the file /manage-subjects.php. The manipulation of the argument del leads… |
| CVE-2025-6910 | Baja (2.1) | 0.40% | — | 30 jun 2025 | A vulnerability was found in PHPGurukul Student Record System 3.2. It has been classified as critical. This affects an unknown part of the file /session.php. The manipulation of the argument session leads to sql… |
| CVE-2024-27685 | Alta (7.1) | 0.32% | — | 25 jun 2025 | SQL Injection vulnerability in Student Record system Using PHP and MySQL v.3.20 allows a remote attacker to obtain sensitive information via a crafted payload to the $cshortname, $cfullname, and $cdate variables. |
| CVE-2025-5216 | Media (6.9) | 0.58% | — | 27 may 2025 | A vulnerability classified as critical was found in PHPGurukul Student Record System 3.20. This vulnerability affects unknown code of the file /login.php. The manipulation of the argument ID leads to sql injection. The… |
| CVE-2025-4112 | Media (6.9) | 0.56% | — | 30 abr 2025 | A vulnerability was found in PHPGurukul Student Record System 3.20. It has been declared as critical. This vulnerability affects unknown code of the file /add-course.php. The manipulation of the argument course-short… |
| CVE-2025-4108 | Media (6.9) | 0.56% | — | 30 abr 2025 | A vulnerability, which was classified as critical, was found in PHPGurukul Student Record System 3.20. Affected is an unknown function of the file /add-subject.php. The manipulation of the argument sub1 leads to sql… |
| CVE-2025-4073 | Media (6.9) | 0.64% | — | 29 abr 2025 | A vulnerability was found in PHPGurukul Student Record System 3.20. It has been classified as critical. Affected is an unknown function of the file /change-password.php. The manipulation of the argument currentpassword… |
| CVE-2025-1902 | Media (6.9) | 0.60% | — | 4 mar 2025 | A vulnerability was found in PHPGurukul Student Record System 3.2. It has been declared as critical. This vulnerability affects unknown code of the file /password-recovery.php. The manipulation of the argument emailid… |
| CVE-2024-3771 | Alta (8.8) | 0.80% | — | 15 abr 2024 | A vulnerability was found in PHPGurukul Student Record System 3.20 and classified as critical. Affected by this issue is some unknown functionality of the file /edit-subject.php. The manipulation of the argument… |
| CVE-2024-3770 | Crítica (9.8) | 0.84% | — | 15 abr 2024 | A vulnerability has been found in PHPGurukul Student Record System 3.20 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /manage-courses.php?del=1. The manipulation of… |
| CVE-2024-3769 | Crítica (9.8) | 0.95% | — | 15 abr 2024 | A vulnerability, which was classified as critical, was found in PHPGurukul Student Record System 3.20. Affected is an unknown function of the file /login.php. The manipulation of the argument id/password leads to sql… |
| CVE-2021-26765 | Crítica (9.8) | 2.9% | — | 22 jul 2021 | SQL injection vulnerability in PHPGurukul Student Record System 4.0 allows remote attackers to execute arbitrary SQL statements, via the sid parameter to edit-sub.php. |
| CVE-2021-26764 | Alta (8.8) | 2.5% | — | 22 jul 2021 | SQL injection vulnerability in PHPGurukul Student Record System v 4.0 allows remote attackers to execute arbitrary SQL statements, via the id parameter to edit-std.php. |
| CVE-2021-26762 | Alta (8.8) | 2.3% | — | 22 jul 2021 | SQL injection vulnerability in PHPGurukul Student Record System 4.0 allows remote attackers to execute arbitrary SQL statements, via the cid parameter to edit-course.php. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
Otros productos de Phpgurukul
Hospital Management System · 62Online Shopping Portal · 43ZOO Management System · 37ART Gallery Management System · 36Online Fire Reporting System · 32Complaint Management System · 32Beauty Parlour Management System · 28User Registration & Login AND User Management System · 25Land Record System · 25Pre-school Enrollment System · 25Vehicle Parking Management System · 24Dairy Farm Shop Management System · 24