VendorsPHPGurukulstudent_result_management_systemall versions
Vulnerabilities

PHPGurukul Student Result Management System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2023-48718
Student Result Management System v1.0 - Multiple Unauthenticated SQL Injections (SQLi)
Published 2023-12-21 · Modified
9.8EPSS 0.007
CVE-2023-48720
Student Result Management System v1.0 - Multiple Unauthenticated SQL Injections (SQLi)
Published 2023-12-21 · Modified
9.8EPSS 0.007
CVE-2023-48722
Student Result Management System v1.0 - Multiple Unauthenticated SQL Injections (SQLi)
Published 2023-12-21 · Modified
9.8EPSS 0.007
CVE-2025-5599
PHPGurukul Student Result Management System editmyexp.php sql injection
Published 2025-06-04 · Analyzed
9.8EPSS 0.005
CVE-2025-7534
PHPGurukul Student Result Management System GET Parameter notice-details.php sql injection
Published 2025-07-13 · Analyzed
9.8EPSS 0.005
CVE-2025-50489
Improper session invalidation in the component /srms/change-password.php of PHPGurukul Student Result Management System v2.0 allows attackers to execute a session hijacking attack.
Published 2025-07-28 · Modified
7.5EPSS 0.005
CVE-2025-50490
Improper session invalidation in the component /elms/emp-changepassword.php of PHPGurukul Student Result Management System v2.0 allows attackers to execute a session hijacking attack.
Published 2025-07-28 · Modified
7.5EPSS 0.004
CVE-2025-56710
A Cross-Site Request Forgery (CSRF) vulnerability was identified in the Profile Page of the PHPGurukul Student-Result-Management-System-Using-PHP-V2.0. This flaw allows an attacker to trick authenticated users into unintentionally modifying their account details. By crafting a malicious HTML page, an attacker can submit unauthorized requests to the vulnerable endpoint: /create-class.php.
Published 2025-09-15 · Analyzed
7.3EPSS 0.002