CVE-2025-3974
- EPSS 0.24%
- Veröffentlicht 27.04.2025 15:00:08
- Zuletzt bearbeitet 07.05.2025 18:40:43
A vulnerability has been found in PHPGurukul COVID19 Testing Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /edit-phlebotomist.php?pid=11. The manipulation of the argument mobilenumber leads to s...
CVE-2025-3973
- EPSS 0.24%
- Veröffentlicht 27.04.2025 14:31:05
- Zuletzt bearbeitet 07.05.2025 18:42:28
A vulnerability, which was classified as critical, was found in PHPGurukul COVID19 Testing Management System 1.0. This affects an unknown part of the file /check_availability.php. The manipulation of the argument mobnumber leads to sql injection. It ...
CVE-2025-3972
- EPSS 0.24%
- Veröffentlicht 27.04.2025 14:00:06
- Zuletzt bearbeitet 07.05.2025 18:50:18
A vulnerability, which was classified as critical, has been found in PHPGurukul COVID19 Testing Management System 1.0. Affected by this issue is some unknown functionality of the file /bwdates-report-result.php. The manipulation of the argument todat...
CVE-2025-3971
- EPSS 0.24%
- Veröffentlicht 27.04.2025 13:31:05
- Zuletzt bearbeitet 07.05.2025 18:54:42
A vulnerability classified as critical was found in PHPGurukul COVID19 Testing Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /add-phlebotomist.php. The manipulation of the argument empid leads to sql in...
CVE-2024-53635
- EPSS 0.07%
- Veröffentlicht 27.11.2024 14:15:19
- Zuletzt bearbeitet 04.04.2025 15:39:01
A Reflected Cross Site Scripting (XSS) vulnerability was found in /covid-tms/patient-search-report.php in PHPGurukul COVID 19 Testing Management System v1.0, which allows remote attackers to execute arbitrary code via the searchdata POST request para...
CVE-2024-53604
- EPSS 0.75%
- Veröffentlicht 27.11.2024 14:15:19
- Zuletzt bearbeitet 27.03.2025 17:35:50
A SQL Injection vulnerability was found in /covid-tms/check_availability.php in PHPGurukul COVID 19 Testing Management System v1.0, which allows remote attackers to execute arbitrary code via the mobnumber POST request parameter.
CVE-2024-53603
- EPSS 0.11%
- Veröffentlicht 27.11.2024 14:15:18
- Zuletzt bearbeitet 27.03.2025 17:40:10
A SQL Injection vulnerability was found in /covid-tms/password-recovery.php in PHPGurukul COVID 19 Testing Management System v1.0, which allows remote attackers to execute arbitrary code via the contactno POST request parameter.
CVE-2021-33469
- EPSS 0.21%
- Veröffentlicht 26.05.2021 17:15:14
- Zuletzt bearbeitet 21.11.2024 06:08:53
COVID19 Testing Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via the "Admin name" parameter.
CVE-2021-33470
- EPSS 0.48%
- Veröffentlicht 26.05.2021 17:15:14
- Zuletzt bearbeitet 21.11.2024 06:08:53
COVID19 Testing Management System 1.0 is vulnerable to SQL Injection via the admin panel.