CVE-2023-6653

Severity
4.3MEDIUM
EPSS
0.1%
top 80.45%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 10

Description

A vulnerability was found in PHPGurukul Teacher Subject Allocation Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /admin/subject.php of the component Create a new Subject. The manipulation of the argument cid leads to cross-site request forgery. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-247346 is the identifier assigned to this vulnerability.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:NExploitability: 2.8 | Impact: 1.4

🔴Vulnerability Details

2
GHSA
GHSA-pc2w-444v-gxhc: A vulnerability was found in PHPGurukul Teacher Subject Allocation Management System 12023-12-10
CVEList
PHPGurukul Teacher Subject Allocation Management System Create a new Subject subject.php cross-site request forgery2023-12-10
CVE-2023-6653 (MEDIUM CVSS 4.3) | A vulnerability was found in PHPGur | cvebase.io