Phpgurukul Human Metapneumovirus Testing Management System vulnerabilities

14 known vulnerabilities affecting phpgurukul/human_metapneumovirus_testing_management_system.

Total CVEs
14
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM14

Vulnerabilities

Page 1 of 1
CVE-2025-5707MEDIUMCVSS 6.9v1.02025-06-06
CVE-2025-5707 [MEDIUM] CWE-74 CVE-2025-5707: A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /registered-user-testing.php. The manipulation of the argument testtype leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to
cvelistv5nvd
CVE-2025-5706MEDIUMCVSS 6.9v1.02025-06-06
CVE-2025-5706 [MEDIUM] CWE-74 CVE-2025-5706: A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /new-user-testing.php. The manipulation of the argument state leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to
cvelistv5nvd
CVE-2025-5694MEDIUMCVSS 5.3v1.02025-06-05
CVE-2025-5694 [MEDIUM] CWE-74 CVE-2025-5694: A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /search-report-result.php. The manipulation of the argument serachdata leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to
cvelistv5nvd
CVE-2025-5693MEDIUMCVSS 5.3v1.02025-06-05
CVE-2025-5693 [MEDIUM] CWE-74 CVE-2025-5693: A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /bwdates-report-result.php. The manipulation of the argument fromdate/todate leads to sql injection. The attack can be launched remotely. The exploit has bee
cvelistv5nvd
CVE-2025-4812MEDIUMCVSS 6.9v1.02025-05-16
CVE-2025-4812 [MEDIUM] CWE-74 CVE-2025-4812: A vulnerability, which was classified as critical, has been found in PHPGurukul Human Metapneumoviru A vulnerability, which was classified as critical, has been found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. This issue affects some unknown processing of the file /profile.php. The manipulation of the argument mobilenumber leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public
cvelistv5nvd
CVE-2025-4813MEDIUMCVSS 6.9v1.02025-05-16
CVE-2025-4813 [MEDIUM] CWE-74 CVE-2025-4813: A vulnerability, which was classified as critical, was found in PHPGurukul Human Metapneumovirus Tes A vulnerability, which was classified as critical, was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. Affected is an unknown function of the file /edit-phlebotomist.php. The manipulation of the argument mobilenumber leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the publ
cvelistv5nvd
CVE-2025-4303MEDIUMCVSS 6.9v1.02025-05-06
CVE-2025-4303 [MEDIUM] CWE-74 CVE-2025-4303: A vulnerability, which was classified as critical, has been found in PHPGurukul Human Metapneumoviru A vulnerability, which was classified as critical, has been found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. Affected by this issue is some unknown functionality of the file /add-phlebotomist.php. The manipulation of the argument empid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to
cvelistv5nvd
CVE-2025-2374MEDIUMCVSS 5.3v1.02025-03-17
CVE-2025-2374 [MEDIUM] CWE-74 CVE-2025-2374: A vulnerability, which was classified as critical, has been found in PHPGurukul Human Metapneumoviru A vulnerability, which was classified as critical, has been found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. This issue affects some unknown processing of the file /profile.php. The manipulation of the argument aid/adminname/mobilenumber/email leads to sql injection. The attack may be initiated remotely. The exploit has been dis
cvelistv5nvd
CVE-2025-2371MEDIUMCVSS 5.1v1.02025-03-17
CVE-2025-2371 [MEDIUM] CWE-79 CVE-2025-2371: A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /registered-user-testing.php of the component Registered Mobile Number Search. The manipulation of the argument regmobilenumber leads to cross site scripting. The
cvelistv5nvd
CVE-2025-2373MEDIUMCVSS 5.3v1.02025-03-17
CVE-2025-2373 [MEDIUM] CWE-74 CVE-2025-2373: A vulnerability classified as critical was found in PHPGurukul Human Metapneumovirus Testing Managem A vulnerability classified as critical was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. This vulnerability affects unknown code of the file /check_availability.php. The manipulation of the argument mobnumber/employeeid leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public
cvelistv5nvd
CVE-2025-2375MEDIUMCVSS 5.1v1.02025-03-17
CVE-2025-2375 [MEDIUM] CWE-79 CVE-2025-2375: A vulnerability, which was classified as problematic, was found in PHPGurukul Human Metapneumovirus A vulnerability, which was classified as problematic, was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. Affected is an unknown function of the file /profile.php of the component Admin Profile Page. The manipulation of the argument email leads to cross site scripting. It is possible to launch the attack remotely. The exploit ha
cvelistv5nvd
CVE-2025-2372MEDIUMCVSS 6.9v1.02025-03-17
CVE-2025-2372 [MEDIUM] CWE-74 CVE-2025-2372: A vulnerability classified as critical has been found in PHPGurukul Human Metapneumovirus Testing Ma A vulnerability classified as critical has been found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. This affects an unknown part of the file /password-recovery.php of the component Password Recovery Page. The manipulation of the argument username leads to sql injection. It is possible to initiate the attack remotely. The exploit ha
cvelistv5nvd
CVE-2025-2084MEDIUMCVSS 5.1v1.02025-03-07
CVE-2025-2084 [MEDIUM] CWE-79 CVE-2025-2084: A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has been classified as problematic. Affected is an unknown function of the file /search-report.php of the component Search Report Page. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclose
cvelistv5nvd
CVE-2025-1954MEDIUMCVSS 6.9v1.02025-03-04
CVE-2025-1954 [MEDIUM] CWE-74 CVE-2025-1954: A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /login.php. The manipulation of the argument username leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the publ
cvelistv5nvd