Vulnerability index

Browse CVEs

979 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Online Shopping Portal MEDIUM 6.5
CVE-2024-44662

PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the username parameter in the admin page.

No fix yet
Fix from $1,600 2025-11-17
Online Shopping Portal MEDIUM 6.5
CVE-2024-44663

PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the product parameter in search-result.php.

No fix yet
Fix from $1,600 2025-11-17
Complaint Management System MEDIUM 6.5
CVE-2024-44654

PHPGurukul Complaint Management System 2.0 is vulnerable to SQL Injection via the email and mobileno parameters in reset-password.php.

No fix yet
Fix from $1,600 2025-11-17
Complaint Management System MEDIUM 6.5
CVE-2024-44658

PHPGurukul Complaint Management System 2.0 is vulnerable to SQL Injection via the subcategory and category parameters in subcategory.php.

No fix yet
Fix from $1,600 2025-11-17
Complaint Management System MEDIUM 6.1
CVE-2024-44655

PHPGurukul Complaint Management System 2.0 is vulnerable to Cross Site Scripting (XSS) via the search parameter in user-search.php.

No fix yet
Fix from $1,600 2025-11-17
Complaint Management System MEDIUM 6.5
CVE-2024-44657

PHPGurukul Complaint Management System 2.0 is vulnerable to SQL Injection via the fromdate and todate parameters in between-date-userreport.php.

No fix yet
Fix from $1,600 2025-11-17
Small Crm MEDIUM 6.5
CVE-2024-44648

PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via id and adminremark parameters in quote-details.php.

No fix yet
Fix from $1,600 2025-11-17
Small Crm MEDIUM 6.1
CVE-2024-44647

PHPGurukul Small CRM 3.0 is vulnerable to Cross Site Scripting (XSS) via the aremark parameter in manage-tickets.php.

No fix yet
Fix from $1,600 2025-11-17
Small Crm MEDIUM 6.5
CVE-2024-44641

PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via the oldpass parameter in change-password.php.

No fix yet
Fix from $1,600 2025-11-17
Small Crm MEDIUM 6.5
CVE-2024-44644

PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via the frm_id and aremark parameters in manage-tickets.php.

No fix yet
Fix from $1,600 2025-11-17
Tourism Management System CRITICAL 9.8
CVE-2025-13247

A security flaw has been discovered in PHPGurukul Tourism Management System 1.0. The affected element is an unknown function of the file /admin/user-…

Mitigation only
Fix from $2,300 2025-11-16
Student Record System MEDIUM 6.5
CVE-2024-44636

PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the adminname and aemailid parameters in /admin-profile.php.

Mitigation only
Fix from $1,600 2025-11-14
Student Record System MEDIUM 6.5
CVE-2024-44639

PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the sub1, sub2, sub3, sub4, and course-short parameters in add-subject.php.

No fix yet
Fix from $1,600 2025-11-14
Student Record System MEDIUM 6.5
CVE-2024-44640

PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the course-short, course-full, and cdate parameters in add-course.php.

No fix yet
Fix from $1,600 2025-11-14
Student Record System MEDIUM 6.5
CVE-2024-55016

PHPGurukul Student Record Management System 3.20 is vulnerable to SQL Injection via the id and password parameters in login.php.

No fix yet
Fix from $1,600 2025-11-14
Student Record System MEDIUM 6.5
CVE-2024-44630

Multiple parameters in register.php in PHPGurukul Student Record System 3.20 are vulnerable to SQL injection. These include: c-full, fname, mname,lna…

No fix yet
Fix from $1,600 2025-11-14
Student Record System MEDIUM 6.5
CVE-2024-44632

PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the id and emailid parameters in password-recovery.php.

No fix yet
Fix from $1,600 2025-11-14
Student Record System MEDIUM 6.5
CVE-2024-44633

PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the currentpassword parameter in change-password.php.

No fix yet
Fix from $1,600 2025-11-14
Student Record System MEDIUM 6.1
CVE-2024-44635

PHPGurukul Student Record System 3.20 is vulnerable to Cross Site Scripting (XSS) via adminname and aemailid parameters in /admin-profile.php.

No fix yet
Fix from $1,600 2025-11-14
Maid Hiring Management System MEDIUM 5.4
CVE-2025-50363

Phpgurukul Maid Hiring Management System 1.0 is vulnerable to Cross Site Scripting (XSS) in /maid-hiring.php va the name field.

No fix yet
Fix from $1,600 2025-11-03
News Portal HIGH 8.1
CVE-2025-12615

A security vulnerability has been detected in PHPGurukul News Portal 1.0. The affected element is an unknown function of the file /onps/settings.py. …

No fix yet
Fix from $1,950 2025-11-03
News Portal MEDIUM 5.9
CVE-2025-12616

A vulnerability was detected in PHPGurukul News Portal 1.0. The impacted element is an unknown function of the file /onps/settings.py. Performing a m…

No fix yet
Fix from $1,600 2025-11-03
Bank Locker Management System MEDIUM 6.1
CVE-2025-61255

Bank Locker Management System by PHPGurukul is affected by a Cross-Site Scripting (XSS) vulnerability via the /search parameter, where unsanitized in…

Mitigation only
Fix from $1,600 2025-10-21
Beauty Parlour Management System CRITICAL 9.8
CVE-2025-11506

A security flaw has been discovered in PHPGurukul Beauty Parlour Management System 1.1. The affected element is an unknown function of the file /admi…

Mitigation only
Fix from $2,300 2025-10-08
Beauty Parlour Management System CRITICAL 9.8
CVE-2025-11507

A weakness has been identified in PHPGurukul Beauty Parlour Management System 1.1. The impacted element is an unknown function of the file /admin/sea…

Mitigation only
Fix from $2,300 2025-10-08
Beauty Parlour Management System CRITICAL 9.8
CVE-2025-11505

A vulnerability was identified in PHPGurukul Beauty Parlour Management System 1.1. Impacted is an unknown function of the file /admin/new-appointment…

Mitigation only
Fix from $2,300 2025-10-08
Beauty Parlour Management System CRITICAL 9.8
CVE-2025-11503

A vulnerability was determined in PHPGurukul Beauty Parlour Management System 1.1. This issue affects some unknown processing of the file /admin/mana…

Mitigation only
Fix from $2,300 2025-10-08
Beauty Parlour Management System CRITICAL 9.8
CVE-2025-11415

A vulnerability was identified in PHPGurukul Beauty Parlour Management System 1.1. Affected by this issue is some unknown functionality of the file /…

Mitigation only
Fix from $2,300 2025-10-07
Beauty Parlour Management System CRITICAL 9.8
CVE-2025-11416

A security flaw has been discovered in PHPGurukul Beauty Parlour Management System 1.1. This affects an unknown part of the file /admin/invoices.php.…

Mitigation only
Fix from $2,300 2025-10-07
Cyber Cafe Management System MEDIUM 6.1
CVE-2025-11390

A weakness has been identified in PHPGurukul Cyber Cafe Management System 1.0. Affected by this vulnerability is an unknown functionality of the file…

No fix yet
Fix from $1,600 2025-10-07