Phpgurukul Online Notes Sharing System vulnerabilities
7 known vulnerabilities affecting phpgurukul/online_notes_sharing_system.
Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM6
Vulnerabilities
Page 1 of 1
CVE-2025-7155MEDIUMCVSS 6.9v1.02025-07-08
CVE-2025-7155 [MEDIUM] CWE-74 CVE-2025-7155: A vulnerability, which was classified as critical, was found in PHPGurukul Online Notes Sharing Syst
A vulnerability, which was classified as critical, was found in PHPGurukul Online Notes Sharing System 1.0. This affects an unknown part of the file /Dashboard of the component Cookie Handler. The manipulation of the argument sessionid leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public a
cvelistv5nvd
CVE-2023-7053HIGHCVSS 8.8v1.02023-12-22
CVE-2023-7053 [LOW] CWE-521 CVE-2023-7053: A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0. It has been declared as pro
A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /user/signup.php. The manipulation leads to weak password requirements. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult
cvelistv5nvd
CVE-2023-7054MEDIUMCVSS 5.4v1.02023-12-22
CVE-2023-7054 [MEDIUM] CWE-434 CVE-2023-7054: A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0. It has been rated as proble
A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /user/add-notes.php. The manipulation leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-2487
cvelistv5nvd
CVE-2023-7052MEDIUMCVSS 4.3v1.02023-12-22
CVE-2023-7052 [MEDIUM] CWE-352 CVE-2023-7052: A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0. It has been classified as p
A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0. It has been classified as problematic. This affects an unknown part of the file /user/profile.php. The manipulation of the argument name leads to cross-site request forgery. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be us
cvelistv5nvd
CVE-2023-7055MEDIUMCVSS 5.4v1.02023-12-22
CVE-2023-7055 [MEDIUM] CWE-284 CVE-2023-7055: A vulnerability classified as problematic has been found in PHPGurukul Online Notes Sharing System 1
A vulnerability classified as problematic has been found in PHPGurukul Online Notes Sharing System 1.0. Affected is an unknown function of the file /user/profile.php of the component Contact Information Handler. The manipulation of the argument mobilenumber leads to improper access controls. It is possible to launch the attack remotely. The exploit ha
cvelistv5nvd
CVE-2023-7050MEDIUMCVSS 5.4v1.02023-12-21
CVE-2023-7050 [LOW] CWE-79 CVE-2023-7050: A vulnerability has been found in PHPGurukul Online Notes Sharing System 1.0 and classified as probl
A vulnerability has been found in PHPGurukul Online Notes Sharing System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file user/profile.php. The manipulation of the argument name/email leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and
cvelistv5nvd
CVE-2023-7051MEDIUMCVSS 4.3v1.02023-12-21
CVE-2023-7051 [MEDIUM] CWE-352 CVE-2023-7051: A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0 and classified as problemati
A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /user/manage-notes.php of the component Notes Handler. The manipulation of the argument delid leads to cross-site request forgery. The attack may be launched remotely. The exploit has b
cvelistv5nvd