CNNVD-202506-2626 Information

CNNVD ID

CNNVD-202506-2626

CVE-2025-6301

  • CNNVD Published: 2025-06-20

Description (Chinese)

PHPGurukul Notice Board System是PHPGurukul公司的一个公告板系统。 PHPGurukul Notice Board System 1.0版本存在代码注入漏洞,该漏洞源于文件/admin/manage-notices.php中参数Title/Description处理不当导致跨站脚本,可能导致远程攻击。

Description (English)

PHPGurukul Notice Board Systems is a board system of PHPGurukul. Version 1.0 of PHPGurukul Notice Board System has a code-injection loophole that originates from the parameter Title/Description mishandling in file/admin/manage-notices.php, which leads to a cross-site script and may lead to a remote attack.

Hazard Level

Critical

Vulnerability Type

代码注入

Affected Vendor

PHPGurukul

Published

2025-06-20

Last Modified

2026-02-24

References

https://vuldb.com/?ctiid.313301 https://phpgurukul.com/ https://vuldb.com/?id.313301 https://vuldb.com/?submit.595373 https://access.redhat.com/security/cve/cve-2025-6301

Share on: