A vulnerability was found in PHPGurukul Medical Card Generation System 1.0. It has been classified as critical. This affects an unknown part of the file /download-medical-cards.php. The manipulation of the argument searchdata leads to sql injection.
This vulnerability is uniquely identified as CVE-2025-2378. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in SourceCodester Vehicle Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /confirmbooking.php. The manipulation of the argument id leads to cross site scripting.
This vulnerability is handled as CVE-2025-2377. The attack may be launched remotely. Furthermore, there is an exploit available.
The initial researcher advisory mentions contradicting product names.
A vulnerability has been found in viames Pair Framework up to 1.9.11 and classified as critical. Affected by this vulnerability is the function getCookieContent of the file /src/UserRemember.php of the component PHP Object Handler. The manipulation of the argument cookieName leads to deserialization.
This vulnerability is known as CVE-2025-2376. The attack can be launched remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as problematic, was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. Affected is an unknown function of the file /profile.php of the component Admin Profile Page. The manipulation of the argument email leads to cross site scripting.
This vulnerability is traded as CVE-2025-2375. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, has been found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. This issue affects some unknown processing of the file /profile.php. The manipulation of the argument aid/adminname/mobilenumber/email leads to sql injection.
The identification of this vulnerability is CVE-2025-2374. The attack may be initiated remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. This vulnerability affects unknown code of the file /check_availability.php. The manipulation of the argument mobnumber/employeeid leads to sql injection.
This vulnerability was named CVE-2025-2373. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical has been found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. This affects an unknown part of the file /password-recovery.php of the component Password Recovery Page. The manipulation of the argument username leads to sql injection.
This vulnerability is uniquely identified as CVE-2025-2372. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /registered-user-testing.php of the component Registered Mobile Number Search. The manipulation of the argument regmobilenumber leads to cross site scripting.
This vulnerability is handled as CVE-2025-2371. The attack may be launched remotely. Furthermore, there is an exploit available.