WordPress和WordPress plugin都是WordPress基金会的产品。WordPress是一套使用PHP语言开发的博客平台。该平台支持在PHP和MySQL的服务器上架设个人博客网站。WordPress plugin是一个应用插件。 PHPGurukul Emergency Ambulance Hiring Portal 1.0版本存在注入漏洞,该漏洞源于文件/index.php中参数Message处理不当导致SQL注入,可能导致远程攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| PHPGurukul | Emergency Ambulance Hiring Portal | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-6330 | 7.3 HIGH | PHPGurukul Directory Management System searchdata.php sql injection |
| CVE-2025-6323 | 7.3 HIGH | PHPGurukul Pre-School Enrollment System enrollment.php sql injection |
| CVE-2025-6322 | 7.3 HIGH | PHPGurukul Pre-School Enrollment System visit.php sql injection |
| CVE-2025-6318 | 7.3 HIGH | PHPGurukul Pre-School Enrollment System check_availability.php sql injection |
| CVE-2025-6300 | 7.3 HIGH | PHPGurukul Employee Record Management System editempeducation.php sql injection |
| CVE-2025-6333 | 6.3 MEDIUM | PHPGurukul Directory Management System admin-profile.php sql injection |
| CVE-2025-6332 | 6.3 MEDIUM | PHPGurukul Directory Management System manage-directory.php sql injection |
| CVE-2025-6331 | 6.3 MEDIUM | PHPGurukul Directory Management System search-directory.php sql injection |
| CVE-2025-6321 | 6.3 MEDIUM | PHPGurukul Pre-School Enrollment System add-subadmin.php sql injection |
| CVE-2025-6320 | 6.3 MEDIUM | PHPGurukul Pre-School Enrollment System add-class.php sql injection |
| CVE-2025-6319 | 6.3 MEDIUM | PHPGurukul Pre-School Enrollment System add-teacher.php sql injection |
| CVE-2025-6309 | 6.3 MEDIUM | PHPGurukul Emergency Ambulance Hiring Portal add-ambulance.php sql injection |
| CVE-2025-6308 | 6.3 MEDIUM | PHPGurukul Emergency Ambulance Hiring Portal bwdates-request-report-details.php sql inject |
| CVE-2025-6301 | 2.4 LOW | PHPGurukul Notice Board System Add Notice manage-notices.php cross site scripting |
| CVE-2025-6288 | 2.4 LOW | PHPGurukul Bus Pass Management System Profile Page admin-profile.php cross site scripting |
No comments yet