CVE-2025-50487
- EPSS 0.04%
- Veröffentlicht 28.07.2025 19:15:42
- Zuletzt bearbeitet 29.07.2025 21:14:40
Improper session invalidation in the component /bbdms/change-password.php of PHPGurukul Blood Bank & Donor Management System v2.4 allows attackers to execute a session hijacking attack.
CVE-2025-4176
- EPSS 0.28%
- Veröffentlicht 01.05.2025 21:31:05
- Zuletzt bearbeitet 09.05.2025 13:42:13
A vulnerability has been found in PHPGurukul Blood Bank & Donor Management System 2.4 and classified as critical. This vulnerability affects unknown code of the file /admin/request-received-bydonar.php. The manipulation of the argument searchdata lea...
CVE-2024-12982
- EPSS 0.13%
- Veröffentlicht 27.12.2024 06:15:23
- Zuletzt bearbeitet 03.04.2025 13:08:37
A vulnerability was found in PHPGurukul Blood Bank & Donor Management System 2.4. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /bbdms/admin/update-contactinfo.php. The manipulation of the argument...
CVE-2024-12955
- EPSS 0.17%
- Veröffentlicht 26.12.2024 15:15:06
- Zuletzt bearbeitet 03.04.2025 16:27:55
A vulnerability has been found in PHPGurukul Blood Bank & Donor Management System 2.4 and classified as problematic. This vulnerability affects unknown code of the file /logout.php. The manipulation leads to cross-site request forgery. The attack can...
CVE-2024-0476
- EPSS 0.06%
- Veröffentlicht 13.01.2024 06:15:48
- Zuletzt bearbeitet 21.11.2024 08:46:40
A vulnerability, which was classified as problematic, was found in Blood Bank & Donor Management 1.0. This affects an unknown part of the file request-received-bydonar.php. The manipulation leads to cross site scripting. It is possible to initiate th...
CVE-2024-0459
- EPSS 0.1%
- Veröffentlicht 12.01.2024 16:15:52
- Zuletzt bearbeitet 21.11.2024 08:46:37
A vulnerability has been found in Blood Bank & Donor Management 5.6 and classified as critical. This vulnerability affects unknown code of the file /admin/request-received-bydonar.php. The manipulation leads to sql injection. The attack can be initia...
CVE-2023-41575
- EPSS 0.12%
- Veröffentlicht 08.09.2023 19:15:44
- Zuletzt bearbeitet 21.11.2024 08:21:18
Multiple stored cross-site scripting (XSS) vulnerabilities in /bbdms/sign-up.php of Blood Bank & Donor Management v2.2 allow attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Full Name, Message, or Address par...