Home

Description

Multiple parameters in register.php in PHPGurukul Student Record System 3.20 are vulnerable to SQL injection. These include: c-full, fname, mname,lname, gname, ocp, nation, mobno, email, board1, roll1, pyear1, board2, roll2, pyear2, sub1,marks1, sub2, course-short, income, category, ph, country, state, city, padd, cadd, and gender.

PUBLISHED Reserved 2024-08-21 | Published 2025-11-14 | Updated 2025-11-14 | Assigner mitre

References

phpgurukul.com/student-record-system-php

github.com/leexsoyoung/CVEs/blob/main/CVE-2024-44630.md

cve.org (CVE-2024-44630)

nvd.nist.gov (CVE-2024-44630)

Download JSON