CVE-2025-15390
- EPSS 0.02%
- Veröffentlicht 31.12.2025 15:32:06
- Zuletzt bearbeitet 24.02.2026 07:17:09
A security flaw has been discovered in PHPGurukul Small CRM 4.0. This impacts an unknown function of the file /admin/edit-user.php. The manipulation results in missing authorization. It is possible to launch the attack remotely. The exploit has been ...
CVE-2024-44648
- EPSS 0.04%
- Veröffentlicht 17.11.2025 00:00:00
- Zuletzt bearbeitet 19.11.2025 13:10:31
PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via id and adminremark parameters in quote-details.php.
CVE-2024-44647
- EPSS 0.05%
- Veröffentlicht 17.11.2025 00:00:00
- Zuletzt bearbeitet 19.11.2025 13:11:35
PHPGurukul Small CRM 3.0 is vulnerable to Cross Site Scripting (XSS) via the aremark parameter in manage-tickets.php.
CVE-2024-44644
- EPSS 0.04%
- Veröffentlicht 17.11.2025 00:00:00
- Zuletzt bearbeitet 19.11.2025 13:11:43
PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via the frm_id and aremark parameters in manage-tickets.php.
CVE-2024-44641
- EPSS 0.04%
- Veröffentlicht 17.11.2025 00:00:00
- Zuletzt bearbeitet 19.11.2025 13:11:50
PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via the oldpass parameter in change-password.php.
CVE-2025-11053
- EPSS 0.02%
- Veröffentlicht 27.09.2025 09:15:29
- Zuletzt bearbeitet 03.10.2025 18:24:04
A weakness has been identified in PHPGurukul Small CRM 4.0. This affects an unknown function of the file /forgot-password.php. Executing manipulation of the argument email can lead to sql injection. The attack can be launched remotely. The exploit ha...
CVE-2025-10664
- EPSS 0.03%
- Veröffentlicht 18.09.2025 12:02:07
- Zuletzt bearbeitet 19.09.2025 20:25:24
A vulnerability was determined in PHPGurukul Small CRM 4.0. This impacts an unknown function of the file /create-ticket.php. Executing manipulation of the argument subject can lead to sql injection. The attack may be launched remotely. The exploit ha...
CVE-2025-10114
- EPSS 0.03%
- Veröffentlicht 09.09.2025 00:32:07
- Zuletzt bearbeitet 10.09.2025 16:44:28
A vulnerability was found in PHPGurukul Small CRM 4.0. Affected by this issue is some unknown functionality of the file /profile.php. The manipulation of the argument Name results in sql injection. The attack can be launched remotely. The exploit has...
CVE-2025-10079
- EPSS 0.03%
- Veröffentlicht 08.09.2025 02:32:07
- Zuletzt bearbeitet 18.09.2025 15:54:38
A flaw has been found in PHPGurukul Small CRM 4.0. Affected by this vulnerability is an unknown functionality of the file /get-quote.php. Executing manipulation of the argument Contact can lead to sql injection. The attack can be executed remotely. T...
CVE-2025-9834
- EPSS 0.03%
- Veröffentlicht 02.09.2025 21:02:11
- Zuletzt bearbeitet 05.09.2025 17:46:46
A flaw has been found in PHPGurukul Small CRM 4.0. Affected by this issue is some unknown functionality of the file /registration.php. Executing manipulation of the argument Username can lead to cross site scripting. It is possible to launch the atta...