VendorsPHPGurukulonline_fire_reporting_systemall versions
Vulnerabilities

PHPGurukul Online Fire Reporting System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

32CVEs
CVE-2025-3238
PHPGurukul Online Fire Reporting System search-request.php sql injection
Published 2025-04-04 · Analyzed
9.8EPSS 0.006
CVE-2025-3239
PHPGurukul Online Fire Reporting System edit-guard-detail.php sql injection
Published 2025-04-04 · Analyzed
9.8EPSS 0.006
CVE-2025-3240
PHPGurukul Online Fire Reporting System search.php sql injection
Published 2025-04-04 · Analyzed
9.8EPSS 0.006
CVE-2025-5613
PHPGurukul Online Fire Reporting System request-details.php sql injection
Published 2025-06-04 · Analyzed
9.8EPSS 0.005
CVE-2025-5612
PHPGurukul Online Fire Reporting System reporting.php sql injection
Published 2025-06-04 · Analyzed
9.8EPSS 0.005
CVE-2025-5618
PHPGurukul Online Fire Reporting System edit-team.php sql injection
Published 2025-06-04 · Analyzed
9.8EPSS 0.005
CVE-2025-5617
PHPGurukul Online Fire Reporting System manage-teams.php sql injection
Published 2025-06-04 · Analyzed
9.8EPSS 0.005
CVE-2025-40687
SQL injection in PHPGurukul Online Fire Reporting System
Published 2025-09-11 · Analyzed
9.8EPSS 0.003
CVE-2025-40689
SQL injection in PHPGurukul Online Fire Reporting System
Published 2025-09-11 · Analyzed
9.8EPSS 0.003
CVE-2025-40690
SQL injection in PHPGurukul Online Fire Reporting System
Published 2025-09-11 · Analyzed
9.8EPSS 0.003
CVE-2025-40691
SQL injection in PHPGurukul Online Fire Reporting System
Published 2025-09-11 · Analyzed
9.8EPSS 0.003
CVE-2025-40692
SQL injection in PHPGurukul Online Fire Reporting System
Published 2025-09-11 · Analyzed
9.8EPSS 0.003
CVE-2024-34987
A SQL Injection vulnerability exists in the `ofrs/admin/index.php` script of PHPGurukul Online Fire Reporting System 1.2. The vulnerability allows attackers to bypass authentication and gain unauthorized access by injecting SQL commands into the username input field during the login process.
Published 2024-06-03 · Analyzed
9.1EPSS 0.006
CVE-2025-5614
PHPGurukul Online Fire Reporting System search-report-result.php sql injection
Published 2025-06-04 · Analyzed
8.8EPSS 0.005
CVE-2025-5615
PHPGurukul Online Fire Reporting System details.php sql injection
Published 2025-06-04 · Analyzed
8.8EPSS 0.005
CVE-2025-5616
PHPGurukul Online Fire Reporting System profile.php sql injection
Published 2025-06-04 · Analyzed
8.8EPSS 0.005
CVE-2025-7559
PHPGurukul Online Fire Reporting System bwdates-report-result.php sql injection
Published 2025-07-14 · Analyzed
8.8EPSS 0.003
CVE-2025-7560
PHPGurukul Online Fire Reporting System workin-progress-requests.php sql injection
Published 2025-07-14 · Analyzed
8.8EPSS 0.003
CVE-2025-7582
PHPGurukul Online Fire Reporting System assigned-requests.php sql injection
Published 2025-07-14 · Analyzed
8.8EPSS 0.003
CVE-2025-7561
PHPGurukul Online Fire Reporting System team-ontheway-requests.php sql injection
Published 2025-07-14 · Analyzed
8.8EPSS 0.003
CVE-2025-7562
PHPGurukul Online Fire Reporting System new-requests.php sql injection
Published 2025-07-14 · Analyzed
8.8EPSS 0.003
CVE-2025-7563
PHPGurukul Online Fire Reporting System completed-requests.php sql injection
Published 2025-07-14 · Analyzed
8.8EPSS 0.003
CVE-2025-7583
PHPGurukul Online Fire Reporting System all-requests.php sql injection
Published 2025-07-14 · Analyzed
8.8EPSS 0.003
CVE-2025-7584
PHPGurukul Online Fire Reporting System add-team.php sql injection
Published 2025-07-14 · Analyzed
8.8EPSS 0.003
CVE-2025-7585
PHPGurukul Online Fire Reporting System manage-site.php sql injection
Published 2025-07-14 · Analyzed
8.8EPSS 0.003
CVE-2023-36941
A cross-site scripting (XSS) vulnerability in PHPGurukul Online Fire Reporting System Using PHP and MySQL 1.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the team name, leader, and member fields.
Published 2023-07-27 · Modified
6.1EPSS 0.006
CVE-2023-36942
A cross-site scripting (XSS) vulnerability in PHPGurukul Online Fire Reporting System Using PHP and MySQL 1.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the website title field.
Published 2023-07-27 · Modified
6.1EPSS 0.006
CVE-2025-40696
Cross Site Scripting in PHPGurukul Online Fire Reporting System
Published 2025-09-11 · Analyzed
5.4EPSS 0.002
CVE-2025-40695
Cross Site Scripting in PHPGurukul Online Fire Reporting System
Published 2025-09-11 · Analyzed
5.4EPSS 0.002
CVE-2025-40694
Cross Site Scripting in PHPGurukul Online Fire Reporting System
Published 2025-09-11 · Analyzed
5.4EPSS 0.002
CVE-2025-40693
Cross Site Scripting in PHPGurukul Online Fire Reporting System
Published 2025-09-11 · Analyzed
5.4EPSS 0.002
CVE-2023-36940
Cross Site Scripting (XSS) vulnerability in PHPGurukul Online Fire Reporting System Using PHP and MySQL v.1.2 allows attackers to execute arbitrary code via a crafted payload injected into the search field.
Published 2023-07-10 · Modified
4.8EPSS 0.005