Filtered by vendor Phpgurukul Subscriptions
Filtered by product User Management System Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-9756 1 Phpgurukul 1 User Management System 2025-09-02 6.3 Medium
A vulnerability was found in PHPGurukul User Management System 1.0. This impacts an unknown function of the file /admin/change-emailid.php. The manipulation of the argument uid results in sql injection. The attack can be executed remotely. The exploit has been made public and could be used.
CVE-2025-9302 1 Phpgurukul 1 User Management System 2025-08-23 7.3 High
A vulnerability was identified in PHPGurukul User Management System 1.0. This vulnerability affects unknown code of the file /signup.php. Such manipulation of the argument emailid leads to sql injection. The attack can be executed remotely. The exploit is publicly available and might be used.
CVE-2025-8158 1 Phpgurukul 2 User Management System, User Registration \& Login And User Management System 2025-07-29 6.3 Medium
A vulnerability was found in PHPGurukul Login and User Management System 3.3. It has been declared as critical. This vulnerability affects unknown code of the file /admin/yesterday-reg-users.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
CVE-2024-50991 1 Phpgurukul 1 User Management System 2025-04-04 4.8 Medium
A Cross Site Scripting (XSS) vulnerability was found in /ums-sp/admin/registered-users.php in PHPGurukul User Management System v1.0, which allows remote attackers to execute arbitrary code via the "fname" POST request parameter