VendorsPHPGurukulrail_pass_management_system1.0
Vulnerabilities

PHPGurukul Rail Pass Management System 1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

15CVEs
CVE-2025-4070
PHPGurukul Rail Pass Management System changeimage.php sql injection
Published 2025-04-29 · Analyzed
9.8EPSS 0.006
CVE-2025-4039
PHPGurukul Rail Pass Management System search-pass.php sql injection
Published 2025-04-28 · Analyzed
9.8EPSS 0.006
CVE-2023-3275
PHPGurukul Rail Pass Management System POST Request view-pass-detail.php sql injection
Published 2023-06-15 · Modified
9.8EPSS 0.006
CVE-2025-5553
PHPGurukul Rail Pass Management System download-pass.php sql injection
Published 2025-06-04 · Modified
9.8EPSS 0.005
CVE-2025-5554
PHPGurukul Rail Pass Management System pass-bwdates-reports-details.php sql injection
Published 2025-06-04 · Analyzed
8.8EPSS 0.004
CVE-2023-31932
Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the viewid parameter of the view-enquiry.php file.
Published 2023-07-28 · Modified
7.2EPSS 0.013
CVE-2023-31933
Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the editid parameter of the edit-pass-detail.php file.
Published 2023-07-28 · Modified
7.2EPSS 0.013
CVE-2023-31936
Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the viewid parameter of the view-pass-detail.php file.
Published 2023-07-28 · Modified
7.2EPSS 0.013
CVE-2023-31937
Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the editid parameter of the edit-cateogry-detail.php file.
Published 2023-07-28 · Modified
7.2EPSS 0.011
CVE-2025-5975
PHPGurukul Rail Pass Management System download-pass.php cross site scripting
Published 2025-06-10 · Analyzed
6.1EPSS 0.004
CVE-2025-6126
PHPGurukul Rail Pass Management System contact.php cross site scripting
Published 2025-06-16 · Analyzed
5.4EPSS 0.004
CVE-2025-5976
PHPGurukul Rail Pass Management System add-pass.php cross site scripting
Published 2025-06-10 · Analyzed
5.4EPSS 0.003
CVE-2025-6125
PHPGurukul Rail Pass Management System aboutus.php cross site scripting
Published 2025-06-16 · Analyzed
5.4EPSS 0.003
CVE-2023-31935
Cross Site Scripting vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to obtain sensitive information via the emial parameter of admin-profile.php.
Published 2023-07-28 · Modified
4.8EPSS 0.006
CVE-2023-31934
Cross Site Scripting vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to obtain sensitive information via the adminname parameter of admin-profile.php.
Published 2023-07-28 · Modified
4.8EPSS 0.006