Description
A vulnerability was detected in PHPGurukul Student Record Management System 1.0. This issue affects some unknown processing of the file /edit-subject.php. Performing a manipulation of the argument Subject 1 results in cross site scripting. The attack is possible to be carried out remotely. The exploit is now public and may be used.
Problem types
Product status
Timeline
| 2026-03-01: | Advisory disclosed |
| 2026-03-01: | VulDB entry created |
| 2026-03-01: | VulDB entry last update |
Credits
AS-AbdulSamad (VulDB User)
References
vuldb.com/?id.348298 (VDB-348298 | PHPGurukul Student Record Management System edit-subject.php cross site scripting)
vuldb.com/?ctiid.348298 (VDB-348298 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.763324 (Submit #763324 | PHPGurukul Student Record Management System 1.0 Stored XSS in [/edit-subject.php] endpoint on [Subject 1] field)
github.com/AS-AbdulSamad/CVEs/issues/3
phpgurukul.com/