PHPGurukul Rail Pass Management System是PHPGurukul公司的一个铁路通行证管理系统。 PHPGurukul Rail Pass Management System 1.0版本存在安全漏洞,该漏洞源于/admin/changeimage.php文件中参数editid操作不当,可能导致SQL注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| PHPGurukul | Rail Pass Management System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2025-4074 | 7.3 HIGH | PHPGurukul Curfew e-Pass Management System pass-bwdates-report.php sql injection |
| CVE-2025-4073 | 7.3 HIGH | PHPGurukul Student Record System change-password.php sql injection |
| CVE-2025-4071 | 7.3 HIGH | PHPGurukul COVID19 Testing Management System test-details.php sql injection |
| CVE-2025-4060 | 7.3 HIGH | PHPGurukul Notice Board System category.php sql injection |
| CVE-2025-4080 | 6.3 MEDIUM | PHPGurukul Online Nurse Hiring System view-request.php sql injection |
| CVE-2025-4072 | 6.3 MEDIUM | PHPGurukul Online Nurse Hiring System edit-nurse.php sql injection |
No comments yet