VendorsPHPGurukulland_record_systemall versions
Vulnerabilities

PHPGurukul Land Record System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

25CVEs
CVE-2024-57687
An OS Command Injection vulnerability was found in /landrecordsys/admin/dashboard.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the "Cookie" GET request parameter.
Published 2025-01-10 · Analyzed
9.8EPSS 0.026
CVE-2024-57686
A Cross Site Scripting (XSS) vulnerability was found in /landrecordsys/admin/contactus.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the "pagetitle" parameter.
Published 2025-01-10 · Analyzed
9.8EPSS 0.016
CVE-2025-25389
A SQL Injection vulnerability was found in /admin/forgot-password.php in Phpgurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the contactno POST request parameter.
Published 2025-02-13 · Analyzed
9.8EPSS 0.008
CVE-2025-25388
A SQL Injection vulnerability was found in /admin/edit-propertytype.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the editid GET request parameter.
Published 2025-02-13 · Analyzed
9.8EPSS 0.008
CVE-2025-7757
PHPGurukul Land Record System edit-property.php sql injection
Published 2025-07-17 · Analyzed
9.8EPSS 0.005
CVE-2024-13085
PHPGurukul Land Record System login.php sql injection
Published 2024-12-31 · Analyzed
9.8EPSS 0.005
CVE-2025-4163
PHPGurukul Land Record System aboutus.php sql injection
Published 2025-05-01 · Analyzed
9.8EPSS 0.004
CVE-2024-13084
PHPGurukul Land Record System search-property.php sql injection
Published 2024-12-31 · Analyzed
9.8EPSS 0.004
CVE-2024-13079
PHPGurukul Land Record System property-details.php sql injection
Published 2024-12-31 · Analyzed
8.8EPSS 0.005
CVE-2024-13078
PHPGurukul Land Record System index.php sql injection
Published 2024-12-31 · Analyzed
8.8EPSS 0.005
CVE-2025-25352
A SQL Injection vulnerability was found in /admin/aboutus.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the pagetitle POST request parameter.
Published 2025-02-13 · Analyzed
7.2EPSS 0.008
CVE-2025-25354
A SQL Injection was found in /admin/admin-profile.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the contactnumber POST request parameter.
Published 2025-02-13 · Analyzed
7.2EPSS 0.008
CVE-2025-25355
A SQL Injection vulnerability was found in /admin/bwdates-reports-details.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the fromdate POST request parameter.
Published 2025-02-13 · Modified
7.2EPSS 0.008
CVE-2025-25356
A SQL Injection vulnerability was found in /admin/bwdates-reports-details.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the " todate" POST request parameter.
Published 2025-02-13 · Analyzed
7.2EPSS 0.008
CVE-2025-25357
A SQL Injection vulnerability was found in /admin/contactus.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the email POST request parameter.
Published 2025-02-13 · Analyzed
7.2EPSS 0.008
CVE-2025-25387
A SQL Injection vulnerability was found in /admin/manage-propertytype.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the propertytype POST request parameter.
Published 2025-02-13 · Analyzed
7.2EPSS 0.008
CVE-2024-13082
PHPGurukul Land Record System search-property.php cross site scripting
Published 2024-12-31 · Analyzed
6.1EPSS 0.003
CVE-2025-25462
A SQL Injection vulnerability was found in /admin/add-propertytype.php in PHPGurukul Land Record System Project in PHP v1.0 allows remote attackers to execute arbitrary code via the propertytype POST request parameter.
Published 2025-02-26 · Analyzed
5.5EPSS 0.003
CVE-2024-13075
PHPGurukul Land Record System add-propertytype.php cross site scripting
Published 2024-12-31 · Analyzed
5.4EPSS 0.004
CVE-2024-13077
PHPGurukul Land Record System add-property.php cross site scripting
Published 2024-12-31 · Analyzed
5.4EPSS 0.004
CVE-2024-13076
PHPGurukul Land Record System edit-propertytype.php cross site scripting
Published 2024-12-31 · Analyzed
5.4EPSS 0.004
CVE-2024-13083
PHPGurukul Land Record System admin-profile.php cross site scripting
Published 2024-12-31 · Analyzed
5.4EPSS 0.003
CVE-2024-13081
PHPGurukul Land Record System contactus.php cross site scripting
Published 2024-12-31 · Analyzed
5.4EPSS 0.003
CVE-2024-13074
PHPGurukul Land Record System index.php cross site scripting
Published 2024-12-31 · Analyzed
5.4EPSS 0.003
CVE-2024-13080
PHPGurukul Land Record System aboutus.php cross site scripting
Published 2024-12-31 · Analyzed
5.4EPSS 0.003