Vulnerabilidades em PHPGurukul

721 resultados
Análise Vexday

Com 706 CVEs catalogadas e 19 novas entradas nos últimos 90 dias, o portfólio de vulnerabilidades em produtos PHPGurukul demonstra volume expressivo e ritmo contínuo de descoberta. A falha mais prevalente é CWE-89 (SQL Injection), o que é coerente com o perfil de aplicações PHP orientadas a banco de dados; o CVE mais perigoso atualmente ativo é CVE-2023-0562, com score EPSS de 0,4117 — valor relevante que indica probabilidade não negligenciável de exploração. Embora a taxa de exploração confirmada (0 entradas no CISA KEV) esteja abaixo da média geral do catálogo, a existência de 20 vulnerabilidades com PoC pública e 13 de severidade crítica representa superfície de ataque considerável para equipes que dependem dessas aplicações. A presença de código de prova de conceito disponível publicamente eleva o risco prático mesmo sem confirmação formal de exploração em larga escala, exigindo atenção prioritária na aplicação de patches e validação de entradas.

CVE-2024-5063MEDIUMPHPGurukul Online Course Registration System index.php sql injectionEPSS 0.7%CVE-2024-11967MEDIUMPHPGurukul Complaint Management system reset-password.php sql injectionEPSS 0.7%CVE-2023-1950MEDIUMPHPGurukul BP Monitoring Management System Password Recovery password-recovery.php sql injectionEPSS 0.7%CVE-2025-3689MEDIUMPHPGurukul Men Salon Management System edit-customer-detailed.php sql injectionEPSS 0.7%CVE-2025-4785MEDIUMPHPGurukul Daily Expense Tracker System user-profile.php sql injectionEPSS 0.7%CVE-2023-1963MEDIUMPHPGurukul Bank Locker Management System Search index.php sql injectionEPSS 0.7%CVE-2025-4793MEDIUMPHPGurukul Online Course Registration edit-student-profile.php sql injectionEPSS 0.7%CVE-2023-7100MEDIUMPHPGurukul Restaurant Table Booking System bwdates-report-details.php sql injectionEPSS 0.7%CVE-2023-5804HIGHPHPGurukul Nipah Virus Testing Management System login.php sql injectionEPSS 0.7%CVE-2023-5794HIGHPHPGurukul Online Railway Catering System Login index.php sql injectionEPSS 0.7%CVE-2023-1949MEDIUMPHPGurukul BP Monitoring Management System Change Password change-password.php sql injectionEPSS 0.7%CVE-2024-12228MEDIUMPHPGurukul Complaint Management System user-search.php sql injectionEPSS 0.7%CVE-2024-12230MEDIUMPHPGurukul Complaint Management System subcategory.php sql injectionEPSS 0.7%CVE-2024-5135MEDIUMPHPGurukul Directory Management System index.php sql injectionEPSS 0.7%CVE-2024-12229MEDIUMPHPGurukul Complaint Management System complaint-search.php sql injectionEPSS 0.7%CVE-2024-0355MEDIUMPHPGurukul Dairy Farm Shop Management System add-category.php sql injectionEPSS 0.7%CVE-2024-0360MEDIUMPHPGurukul Hospital Management System edit-doctor-specialization.php sql injectionEPSS 0.7%CVE-2023-6074MEDIUMPHPGurukul Restaurant Table Booking System Booking Reservation check-status.php sql injectionEPSS 0.7%CVE-2024-0361MEDIUMPHPGurukul Hospital Management System contact.php sql injectionEPSS 0.7%CVE-2024-5065MEDIUMPHPGurukul Online Course Registration System sql injectionEPSS 0.7%