VendorsPHPGurukulonline_birth_certificate_system1.0
Vulnerabilities

PHPGurukul Online Birth Certificate System 1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2025-4152
PHPGurukul Online Birth Certificate System bwdates-reports-details.php sql injection
Published 2025-05-01 · Analyzed
9.8EPSS 0.003
CVE-2025-4213
PHPGurukul Online Birth Certificate System search.php sql injection
Published 2025-05-02 · Analyzed
9.8EPSS 0.003
CVE-2024-55059
A stored HTML Injection vulnerability was identified in PHPGurukul Online Birth Certificate System v1.0 in /user/certificate-form.php.
Published 2024-12-17 · Analyzed
6.1EPSS 0.002
CVE-2024-57175
A Stored Cross-Site Scripting (XSS) vulnerability was identified in the PHPGURUKUL Online Birth Certificate System v1.0 via the profile name to /user/certificate-form.php.
Published 2025-02-03 · Analyzed
5.4EPSS 0.003
CVE-2024-55056
A stored cross-site scripting (XSS) vulnerability was identified in Phpgurukul Online Birth Certificate System 1.0 in /user/certificate-form.php via the full name field.
Published 2024-12-17 · Analyzed
5.4EPSS 0.002
CVE-2024-55057
Phpgurukul Online Birth Certificate System 1.0 suffers from insufficient password requirements which can lead to unauthorized access to user accounts.
Published 2024-12-17 · Analyzed
5.4EPSS 0.001
CVE-2024-55058
An insecure direct object reference (IDOR) vulnerability was discovered in PHPGurukul Online Birth Certificate System v1.0. This vulnerability resides in the viewid parameter of /user/view-application-detail.php. Authenticated users can exploit this flaw by manipulating the viewid parameter in the URL to access sensitive birth certificate details of other users without proper authorization checks.
Published 2024-12-17 · Analyzed
4.3EPSS 0.002