Phpgurukul
Phpgurukul Tourism Management System: vulnerabilidades y CVE
Phpgurukul Tourism Management System tiene 7 vulnerabilidades publicadas, 1 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses1
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-13247 | Media (5.5) | 0.38% | — | 16 nov 2025 | A security flaw has been discovered in PHPGurukul Tourism Management System 1.0. The affected element is an unknown function of the file /admin/user-bookings.php. The manipulation of the argument uid results in sql… |
| CVE-2024-41333 | Media (6.1) | 0.54% | — | 6 ago 2024 | A reflected cross-site scripting (XSS) vulnerability in Phpgurukul Tourism Management System v2.0 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload into the… |
| CVE-2024-32256 | Alta (8.1) | 0.73% | — | 16 abr 2024 | Phpgurukul Tourism Management System v2.0 is vulnerable to Unrestricted Upload of File with Dangerous Type via /tms/admin/change-image.php. When updating a current package, there are no checks for what types of files… |
| CVE-2024-32254 | Alta (8.8) | 0.76% | — | 16 abr 2024 | Phpgurukul Tourism Management System v2.0 is vulnerable to Unrestricted Upload of File with Dangerous Type via tms/admin/create-package.php. When creating a new package, there is no checks for what types of files are… |
| CVE-2024-1822 | Media (6.1) | 0.42% | — | 23 feb 2024 | A vulnerability classified as problematic has been found in PHPGurukul Tourism Management System 1.0. Affected is an unknown function of the file user-bookings.php. The manipulation of the argument Full Name leads to… |
| CVE-2022-30930 | Media (4.3) | 0.45% | — | 14 jun 2022 | Tourism Management System Version: V 3.2 is affected by: Cross Site Request Forgery (CSRF). |
| CVE-2020-28136 | Alta (8.8) | 3.1% | — | 17 nov 2020 | An Arbitrary File Upload is discovered in SourceCodester Tourism Management System 1.0 allows the user to conduct remote code execution via admin/create-package.php vulnerable page. |
Otros productos de Phpgurukul
Hospital Management System · 62Online Shopping Portal · 43ZOO Management System · 37ART Gallery Management System · 36Online Fire Reporting System · 32Complaint Management System · 32Student Record System · 29Beauty Parlour Management System · 28User Registration & Login AND User Management System · 25Land Record System · 25Pre-school Enrollment System · 25Dairy Farm Shop Management System · 24