Vulnerability index

Browse CVEs

985 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Car Rental Portal CRITICAL 9.8
CVE-2021-26809

PHPGurukul Car Rental Project version 2.0 suffers from a remote shell upload vulnerability in changeimage1.php.

No fix yet
Fix from $2,300 2021-02-17
Teachers Record Management System CRITICAL 9.8
CVE-2021-26822

Teachers Record Management System 1.0 is affected by a SQL injection vulnerability in 'searchteacher' POST parameter in search-teacher.php. This vuln…

No fix yet
Fix from $2,300 2021-02-15
Online Marriage Registration System MEDIUM 5.4
CVE-2020-26052

Online Marriage Registration System 1.0 is affected by stored cross-site scripting (XSS) vulnerabilities in multiple parameters.

No fix yet
Fix from $1,600 2021-02-08
Daily Expense Tracker System MEDIUM 6.1
CVE-2021-26303

PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS via the user-profile.php Full Name field.

No fix yet
Fix from $1,600 2021-01-29
Daily Expense Tracker System MEDIUM 5.4
CVE-2021-26304

PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS via the add-expense.php Item parameter.

No fix yet
Fix from $1,600 2021-01-29
Hospital Management System HIGH 8.8
CVE-2020-35745

PHPGURUKUL Hospital Management System V 4.0 does not properly restrict access to admin/dashboard.php, which allows attackers to access all data of us…

No fix yet
Fix from $1,950 2021-01-07
Online Marriage Registration System HIGH 8.8
CVE-2020-35151

The Online Marriage Registration System 1.0 post parameter "searchdata" in the user/search.php request is vulnerable to Time Based Sql Injection.

No fix yet
Fix from $1,950 2020-12-21
Tourism Management System HIGH 8.8
CVE-2020-28136

An Arbitrary File Upload is discovered in SourceCodester Tourism Management System 1.0 allows the user to conduct remote code execution via admin/cre…

No fix yet
Fix from $1,950 2020-11-17
User Registration \& Login And User Management System CRITICAL 9.8
CVE-2020-25952

SQL injection vulnerability in PHPGurukul User Registration & Login and User Management System With admin panel 2.1 allows remote attackers to execut…

No fix yet
Fix from $2,300 2020-11-16
Hospital Management System MEDIUM 5.4
CVE-2020-25271

PHPGurukul hospital-management-system-in-php 4.0 allows XSS via admin/patient-search.php, doctor/search.php, book-appointment.php, doctor/appointment…

No fix yet
Fix from $1,600 2020-10-08
Hostel Management System MEDIUM 5.4
CVE-2020-25270

PHPGurukul hostel-management-system 2.1 allows XSS via Guardian Name, Guardian Relation, Guardian Contact no, Address, or City.

No fix yet
Fix from $1,600 2020-10-08
Zoo Management System HIGH 7.8
CVE-2020-25487

PHPGURUKUL Zoo Management System Using PHP and MySQL version 1.0 is affected by: SQL Injection via zms/animal-detail.php.

No fix yet
Fix from $1,950 2020-09-22
Vehicle Parking Management System CRITICAL 9.8
CVE-2020-23936

PHPGurukul Vehicle Parking Management System 1.0 is vulnerable to Authentication Bypass via "Username: admin'# && Password: (Write Something)".

Mitigation only
Fix from $2,300 2020-08-20
Online Course Registration CRITICAL 9.8
CVE-2020-12429

Online Course Registration 2.0 has multiple SQL injections that would can lead to a complete database compromise and authentication bypass in the log…

No fix yet
Fix from $2,300 2020-04-28
Online Book Store CRITICAL 9.8
CVE-2020-10224EPSS 5%

An unauthenticated file upload vulnerability has been identified in admin_add.php in PHPGurukul Online Book Store 1.0. The vulnerability could be exp…

No fix yet
Fix from $2,300 2020-03-08
Job Portal CRITICAL 9.8
CVE-2020-10225

An unauthenticated file upload vulnerability has been identified in admin/gallery.php in PHPGurukul Job Portal 1.0. The vulnerability could be exploi…

No fix yet
Fix from $2,300 2020-03-08
Daily Expense Tracker System CRITICAL 9.8
CVE-2020-10106

PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to SQL injection, as demonstrated by the email parameter in index.php or register.php. The …

No fix yet
Fix from $2,300 2020-03-05
Daily Expense Tracker System MEDIUM 5.4
CVE-2020-10107

PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS, as demonstrated by the ExpenseItem or ExpenseCost parameter in manage-expens…

No fix yet
Fix from $1,600 2020-03-05
Car Rental Portal HIGH 7.2
CVE-2020-5509EPSS 6%

PHPGurukul Car Rental Project v1.0 allows Remote Code Execution via an executable file in an upload of a new profile image.

No fix yet
Fix from $1,950 2020-01-14
Hospital Management System MEDIUM 6.1
CVE-2020-5193

PHPGurukul Hospital Management System in PHP v4.0 suffers from multiple reflected XSS vulnerabilities via the searchdata or Doctorspecialization para…

No fix yet
Fix from $1,600 2020-01-14
Dairy Farm Shop Management System MEDIUM 6.1
CVE-2020-5308

PHPGurukul Dairy Farm Shop Management System 1.0 is vulnerable to XSS, as demonstrated by the category and CategoryCode parameters in add-category.ph…

No fix yet
Fix from $1,600 2020-01-09
Hostel Management System CRITICAL 9.8
CVE-2020-5510

PHPGurukul Hostel Management System v2.0 allows SQL injection via the id parameter in the full-profile.php file.

No fix yet
Fix from $2,300 2020-01-08
Dairy Farm Shop Management System CRITICAL 9.8
CVE-2020-5307EPSS 16%

PHPGurukul Dairy Farm Shop Management System 1.0 is vulnerable to SQL injection, as demonstrated by the username parameter in index.php, the category…

No fix yet
Fix from $2,300 2020-01-07
Hospital Management System HIGH 8.8
CVE-2020-5192EPSS 17%

PHPGurukul Hospital Management System in PHP v4.0 suffers from multiple SQL injection vulnerabilities: multiple pages and parameters are not validati…

No fix yet
Fix from $1,950 2020-01-06
Hospital Management System MEDIUM 6.1
CVE-2020-5191EPSS 6%

PHPGurukul Hospital Management System in PHP v4.0 suffers from multiple Persistent XSS vulnerabilities.

No fix yet
Fix from $1,600 2020-01-06