CNNVD-202506-2624 Information

CNNVD ID

CNNVD-202506-2624

CVE-2025-6288

  • CNNVD Published: 2025-06-20

Description (Chinese)

PHPGurukul Bus Pass Management System是PHPGurukul公司的一个公交通行证管理系统。 PHPGurukul Bus Pass Management System 1.0版本存在代码注入漏洞,该漏洞源于文件/admin/admin-profile.php中参数profile name处理不当,可能导致跨站脚本攻击。

Description (English)

PHPGurukul Bus Pass Management System is a bus pass management system of PHPGurukul. Version 1.0 of PHPGurukul Bus Pass Management System has a code injection loophole, which stems from the inappropriate handling of the parameters in file/admin/admin-profile.php, which may result in a cross-site script attack.

Hazard Level

Critical

Vulnerability Type

代码注入

Affected Vendor

PHPGurukul

Published

2025-06-20

Last Modified

2026-02-24

References

https://phpgurukul.com/ https://vuldb.com/?ctiid.313292 https://vuldb.com/?id.313292 https://vuldb.com/?submit.593923

Share on: