cbcvebase.

Phpgurukul Pre-School Enrollment System vulnerabilities

25 known vulnerabilities affecting phpgurukul/pre-school_enrollment_system.

Total CVEs
25
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL10HIGH11MEDIUM4

Vulnerabilities

Page 2 of 2
CVE-2024-54790P3HIGHCVSS 7.5v1.02024-12-19
CVE-2024-54790 [HIGH] CWE-89 CVE-2024-54790: A SQL Injection vulnerability was found in /index.php in PHPGurukul Pre-School Enrollment System v1. A SQL Injection vulnerability was found in /index.php in PHPGurukul Pre-School Enrollment System v1.0, which allows remote attackers to execute arbitrary code via the visittime parameter.
nvd
CVE-2025-51045P3MEDIUMCVSS 6.5v1.02025-07-29
CVE-2025-51045 [MEDIUM] CWE-89 CVE-2025-51045: Phpgurukul Pre-School Enrollment System 1.0 contains a SQL injection vulnerability in the /admin/pas Phpgurukul Pre-School Enrollment System 1.0 contains a SQL injection vulnerability in the /admin/password-recovery.php file. This vulnerability is attributed to the insufficient validation of user input for the username parameter.
nvd
CVE-2025-2090P4MEDIUMCVSS 4.7v1.02025-03-07
CVE-2025-2090 [MEDIUM] CWE-266 CVE-2025-2090: A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/add-subadmin.php of the component Sub Admin Handler. The manipulation leads to improper access controls. The attack may be launched remotely. The exploit has been disclosed to the
nvd
CVE-2025-50350P4MEDIUMCVSS 5.4v1.02025-06-26
CVE-2025-50350 [MEDIUM] CWE-22 CVE-2025-50350: PHPGurukul Pre-School Enrollment System Project v1.0 is vulnerable to Directory Traversal in manage- PHPGurukul Pre-School Enrollment System Project v1.0 is vulnerable to Directory Traversal in manage-classes.php.
nvd
CVE-2023-47446P4MEDIUMCVSS 5.4v1.02023-11-15
CVE-2023-47446 [MEDIUM] CWE-79 CVE-2023-47446: Pre-School Enrollment version 1.0 is vulnerable to Cross Site Scripting (XSS) on the profile.php pag Pre-School Enrollment version 1.0 is vulnerable to Cross Site Scripting (XSS) on the profile.php page via fullname parameter.
nvd
Phpgurukul Pre-School Enrollment System vulnerabilities | cvebase