CNNVD-202506-3162 Information

CNNVD ID

CNNVD-202506-3162

CVE-2024-27685

  • CNNVD Published: 2025-06-25

Description (Chinese)

PHPGurukul Student Record system Using PHP and MySQL是PHPGurukul公司的一个基于php和mysql的学生档案系统。 PHPGurukul Student Record system Using PHP and MySQL 3.20版本存在安全漏洞,该漏洞源于对变量$cshortname、$cfullname和$cdate的错误操作导致SQL注入。

Description (English)

PHPGurukul Standard System Using PHP and MySQL is a php and mysql-based student file system of PHPGurukul. PHPGurukul Standard System Using PHP and MySQL version 3.20 contains a security loophole resulting from errors in the operation of variables $cshortname, $cfulname and $cdate leading to the injection of SQL.

Hazard Level

Medium

Vulnerability Type

SQL注入

Affected Vendor

PHPGurukul

Published

2025-06-25

Last Modified

2026-02-24

References

https://medium.com/@cnetsec/a-sql-injection-vulnerability-exists-in-the-student-record-system-using-php-and-mysql-v3-20-df2c6fe7dc15 https://phpgurukul.com/student-record-system-php/ https://nvd.nist.gov/vuln/detail/CVE-2024-27685 https://access.redhat.com/security/cve/cve-2024-27685

Share on: