Student Record System
PHP Gurukul · 29 CVEs
PHPGurukul Student Record Management System edit-subject.php cross site scripting
Mar 2, 2026
PHPGurukul Student Record Management System edit-course.php cross site scripting
Mar 2, 2026
A Cross-Site Request Forgery (CSRF) vulnerability in the manage-students.php component of PHPGurukul Student Record Sys…
Nov 18, 2025
PHPGurukul Student Record Management System 3.20 is vulnerable to SQL Injection via the id and password parameters in l…
Nov 14, 2025
PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the course-short, course-full, and cdate param…
Nov 14, 2025
PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the sub1, sub2, sub3, sub4, and course-short p…
Nov 14, 2025
PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the adminname and aemailid parameters in /admi…
Nov 14, 2025
PHPGurukul Student Record System 3.20 is vulnerable to Cross Site Scripting (XSS) via adminname and aemailid parameters…
Nov 14, 2025
PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the currentpassword parameter in change-passwo…
Nov 14, 2025
PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the id and emailid parameters in password-reco…
Nov 14, 2025
Multiple parameters in register.php in PHPGurukul Student Record System 3.20 are vulnerable to SQL injection. These inc…
Nov 14, 2025
PHPGurukul Student Record System register.php sql injection
Jun 30, 2025
PHPGurukul Student Record System edit-student.php sql injection
Jun 30, 2025
PHPGurukul Student Record System admin-profile.php sql injection
Jun 30, 2025
PHPGurukul Student Record System manage-students.php sql injection
Jun 30, 2025
PHPGurukul Student Record System manage-subjects.php sql injection
Jun 30, 2025
PHPGurukul Student Record System session.php sql injection
Jun 30, 2025
SQL Injection vulnerability in Student Record system Using PHP and MySQL v.3.20 allows a remote attacker to obtain sens…
Jun 25, 2025
PHPGurukul Student Record System login.php sql injection
May 27, 2025
PHPGurukul Student Record System add-course.php sql injection
Apr 30, 2025
PHPGurukul Student Record System add-subject.php sql injection
Apr 30, 2025
PHPGurukul Student Record System change-password.php sql injection
Apr 29, 2025
PHPGurukul Student Record System password-recovery.php sql injection
Mar 4, 2025
PHPGurukul Student Record System edit-subject.php sql injection
Apr 15, 2024
PHPGurukul Student Record System sql injection
Apr 15, 2024
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-3403 | PHPGurukul Student Record Management System edit-subject.php cross site scripting | MEDIUM | 0.36% | Mar 2, 2026 |
| CVE-2026-3402 | PHPGurukul Student Record Management System edit-course.php cross site scripting | MEDIUM | 0.36% | Mar 2, 2026 |
| CVE-2025-63955 | A Cross-Site Request Forgery (CSRF) vulnerability in the manage-students.php component of PHPGurukul Student Record System v3.2 allows an attacker to trick an… | HIGH | 0.23% | Nov 18, 2025 |
| CVE-2024-55016 | PHPGurukul Student Record Management System 3.20 is vulnerable to SQL Injection via the id and password parameters in login.php. | MEDIUM | 0.24% | Nov 14, 2025 |
| CVE-2024-44640 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the course-short, course-full, and cdate parameters in add-course.php. | MEDIUM | 0.24% | Nov 14, 2025 |
| CVE-2024-44639 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the sub1, sub2, sub3, sub4, and course-short parameters in add-subject.php. | MEDIUM | 0.24% | Nov 14, 2025 |
| CVE-2024-44636 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the adminname and aemailid parameters in /admin-profile.php. | MEDIUM | 0.20% | Nov 14, 2025 |
| CVE-2024-44635 | PHPGurukul Student Record System 3.20 is vulnerable to Cross Site Scripting (XSS) via adminname and aemailid parameters in /admin-profile.php. | MEDIUM | 0.22% | Nov 14, 2025 |
| CVE-2024-44633 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the currentpassword parameter in change-password.php. | MEDIUM | 0.24% | Nov 14, 2025 |
| CVE-2024-44632 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the id and emailid parameters in password-recovery.php. | MEDIUM | 0.24% | Nov 14, 2025 |
| CVE-2024-44630 | Multiple parameters in register.php in PHPGurukul Student Record System 3.20 are vulnerable to SQL injection. These include: c-full, fname, mname,lname, gname,… | MEDIUM | 0.24% | Nov 14, 2025 |
| CVE-2025-6915 | PHPGurukul Student Record System register.php sql injection | MEDIUM | 0.40% | Jun 30, 2025 |
| CVE-2025-6914 | PHPGurukul Student Record System edit-student.php sql injection | MEDIUM | 0.40% | Jun 30, 2025 |
| CVE-2025-6913 | PHPGurukul Student Record System admin-profile.php sql injection | MEDIUM | 0.40% | Jun 30, 2025 |
| CVE-2025-6912 | PHPGurukul Student Record System manage-students.php sql injection | MEDIUM | 0.40% | Jun 30, 2025 |
| CVE-2025-6911 | PHPGurukul Student Record System manage-subjects.php sql injection | MEDIUM | 0.43% | Jun 30, 2025 |
| CVE-2025-6910 | PHPGurukul Student Record System session.php sql injection | MEDIUM | 0.40% | Jun 30, 2025 |
| CVE-2024-27685 | SQL Injection vulnerability in Student Record system Using PHP and MySQL v.3.20 allows a remote attacker to obtain sensitive information via a crafted payload… | HIGH | 0.32% | Jun 25, 2025 |
| CVE-2025-5216 | PHPGurukul Student Record System login.php sql injection | MEDIUM | 0.58% | May 27, 2025 |
| CVE-2025-4112 | PHPGurukul Student Record System add-course.php sql injection | MEDIUM | 0.56% | Apr 30, 2025 |
| CVE-2025-4108 | PHPGurukul Student Record System add-subject.php sql injection | MEDIUM | 0.56% | Apr 30, 2025 |
| CVE-2025-4073 | PHPGurukul Student Record System change-password.php sql injection | MEDIUM | 0.64% | Apr 29, 2025 |
| CVE-2025-1902 | PHPGurukul Student Record System password-recovery.php sql injection | MEDIUM | 0.60% | Mar 4, 2025 |
| CVE-2024-3771 | PHPGurukul Student Record System edit-subject.php sql injection | HIGH | 0.80% | Apr 15, 2024 |
| CVE-2024-3770 | PHPGurukul Student Record System sql injection | CRITICAL | 0.84% | Apr 15, 2024 |
Showing 1 to 25 of 29 CVEs