Phpgurukul

Student Result Management System

8 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.01%
  • Veröffentlicht 15.09.2025 00:00:00
  • Zuletzt bearbeitet 20.09.2025 02:51:37

A Cross-Site Request Forgery (CSRF) vulnerability was identified in the Profile Page of the PHPGurukul Student-Result-Management-System-Using-PHP-V2.0. This flaw allows an attacker to trick authenticated users into unintentionally modifying their acc...

Exploit
  • EPSS 0.12%
  • Veröffentlicht 28.07.2025 00:00:00
  • Zuletzt bearbeitet 29.07.2025 21:15:13

Improper session invalidation in the component /elms/emp-changepassword.php of PHPGurukul Student Result Management System v2.0 allows attackers to execute a session hijacking attack.

Exploit
  • EPSS 0.12%
  • Veröffentlicht 28.07.2025 00:00:00
  • Zuletzt bearbeitet 29.07.2025 21:16:27

Improper session invalidation in the component /srms/change-password.php of PHPGurukul Student Result Management System v2.0 allows attackers to execute a session hijacking attack.

Exploit
  • EPSS 0.06%
  • Veröffentlicht 13.07.2025 17:02:07
  • Zuletzt bearbeitet 16.07.2025 14:55:20

A vulnerability was found in PHPGurukul Student Result Management System 2.0. It has been classified as critical. Affected is an unknown function of the file /notice-details.php of the component GET Parameter Handler. The manipulation of the argument...

Exploit
  • EPSS 0.07%
  • Veröffentlicht 04.06.2025 17:31:06
  • Zuletzt bearbeitet 09.06.2025 15:00:57

A vulnerability classified as critical was found in PHPGurukul Student Result Management System 1.3. This vulnerability affects unknown code of the file /editmyexp.php. The manipulation of the argument emp1ctc leads to sql injection. The attack can b...

Exploit
  • EPSS 0.15%
  • Veröffentlicht 21.12.2023 21:15:13
  • Zuletzt bearbeitet 21.11.2024 08:32:19

Student Result Management System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'class_name' parameter of the add_results.php resource does not validate the characters received and they are sent unfiltered to the da...

Exploit
  • EPSS 0.16%
  • Veröffentlicht 21.12.2023 21:15:12
  • Zuletzt bearbeitet 21.11.2024 08:32:19

Student Result Management System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'class_name' parameter of the add_students.php resource does not validate the characters received and they are sent unfiltered to the d...

Exploit
  • EPSS 0.15%
  • Veröffentlicht 21.12.2023 21:15:12
  • Zuletzt bearbeitet 21.11.2024 08:32:19

Student Result Management System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'password' parameter of the login.php resource does not validate the characters received and they are sent unfiltered to the database. ...