A weakness has been identified in PHPGurukul Complaint Management System 1.0. Affected by this issue is some unknown functionality of the file user/check_availability.php. This manipulation of the argument email causes sql injection. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks.
History

Thu, 20 Aug 2026 02:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 18 Aug 2026 01:15:00 +0000

Type Values Removed Values Added
Description A weakness has been identified in PHPGurukul Complaint Management System 1.0. Affected by this issue is some unknown functionality of the file user/check_availability.php. This manipulation of the argument email causes sql injection. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks.
Title PHPGurukul Complaint Management System check_availability.php sql injection
First Time appeared Phpgurukul
Phpgurukul complaint Management System
Weaknesses CWE-74
CWE-89
CPEs cpe:2.3:a:phpgurukul:complaint_management_system:*:*:*:*:*:*:*:*
Vendors & Products Phpgurukul
Phpgurukul complaint Management System
References
Metrics cvssV2_0

{'score': 7.5, 'vector': 'AV:N/AC:L/Au:N/C:P/I:P/A:P/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 7.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2026-08-18T01:00:10.750Z

Updated: 2026-08-18T13:31:16.268Z

Reserved: 2026-08-17T16:30:20.198Z

Link: CVE-2026-75089

cve-icon Vulnrichment

Updated: 2026-08-18T13:31:12.359Z

cve-icon NVD

Status : Received

Published: 2026-08-18T01:16:43.233

Modified: 2026-08-18T14:18:09.743

Link: CVE-2026-75089

cve-icon Redhat

No data.