VendorsPHPGurukulcovid19_testing_management_system1.0
Vulnerabilities

PHPGurukul covid19 Testing Management System 1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

17CVEs
CVE-2021-33470
COVID19 Testing Management System 1.0 is vulnerable to SQL Injection via the admin panel.
Published 2021-05-26 · Modified
9.8EPSS 0.023
CVE-2024-53604
A SQL Injection vulnerability was found in /covid-tms/check_availability.php in PHPGurukul COVID 19 Testing Management System v1.0, which allows remote attackers to execute arbitrary code via the mobnumber POST request parameter.
Published 2024-11-27 · Analyzed
9.8EPSS 0.010
CVE-2025-4174
PHPGurukul COVID19 Testing Management System login.php sql injection
Published 2025-05-01 · Analyzed
9.8EPSS 0.006
CVE-2025-4071
PHPGurukul COVID19 Testing Management System test-details.php sql injection
Published 2025-04-29 · Analyzed
9.8EPSS 0.006
CVE-2025-3974
PHPGurukul COVID19 Testing Management System edit-phlebotomist.php sql injection
Published 2025-04-27 · Analyzed
9.8EPSS 0.005
CVE-2025-3976
PHPGurukul COVID19 Testing Management System new-user-testing.php sql injection
Published 2025-04-27 · Analyzed
9.8EPSS 0.005
CVE-2025-3973
PHPGurukul COVID19 Testing Management System check_availability.php sql injection
Published 2025-04-27 · Analyzed
9.8EPSS 0.005
CVE-2025-3972
PHPGurukul COVID19 Testing Management System bwdates-report-result.php sql injection
Published 2025-04-27 · Analyzed
9.8EPSS 0.005
CVE-2025-3971
PHPGurukul COVID19 Testing Management System add-phlebotomist.php sql injection
Published 2025-04-27 · Analyzed
9.8EPSS 0.005
CVE-2025-4004
PHPGurukul COVID19 Testing Management System password-recovery.php sql injection
Published 2025-04-28 · Analyzed
9.8EPSS 0.005
CVE-2025-4005
PHPGurukul COVID19 Testing Management System patient-report.php sql injection
Published 2025-04-28 · Analyzed
9.8EPSS 0.005
CVE-2025-4028
PHPGurukul COVID19 Testing Management System profile.php sql injection
Published 2025-04-28 · Analyzed
9.8EPSS 0.005
CVE-2025-4030
PHPGurukul COVID19 Testing Management System search-report-result.php sql injection
Published 2025-04-28 · Analyzed
9.8EPSS 0.005
CVE-2024-53603
A SQL Injection vulnerability was found in /covid-tms/password-recovery.php in PHPGurukul COVID 19 Testing Management System v1.0, which allows remote attackers to execute arbitrary code via the contactno POST request parameter.
Published 2024-11-27 · Analyzed
7.3EPSS 0.007
CVE-2025-6287
PHPGurukul COVID19 Testing Management System Take Action test-details.php cross site scripting
Published 2025-06-19 · Analyzed
5.4EPSS 0.003
CVE-2021-33469
COVID19 Testing Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via the "Admin name" parameter.
Published 2021-05-26 · Modified
4.8EPSS 0.007
CVE-2024-53635
A Reflected Cross Site Scripting (XSS) vulnerability was found in /covid-tms/patient-search-report.php in PHPGurukul COVID 19 Testing Management System v1.0, which allows remote attackers to execute arbitrary code via the searchdata POST request parameter.
Published 2024-11-27 · Analyzed
4.8EPSS 0.005