Vulnerabilities (CVE)

Filtered by vendor Phpgurukul Subscribe
Filtered by product User Management System
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-9302 1 Phpgurukul 1 User Management System 2025-08-22 7.5 HIGH 7.3 HIGH
A vulnerability was identified in PHPGurukul User Management System 1.0. This vulnerability affects unknown code of the file /signup.php. Such manipulation of the argument emailid leads to sql injection. The attack can be executed remotely. The exploit is publicly available and might be used.
CVE-2024-50991 1 Phpgurukul 1 User Management System 2025-04-04 N/A 4.8 MEDIUM
A Cross Site Scripting (XSS) vulnerability was found in /ums-sp/admin/registered-users.php in PHPGurukul User Management System v1.0, which allows remote attackers to execute arbitrary code via the "fname" POST request parameter