CNNVD-202507-2528 Information

CNNVD ID

CNNVD-202507-2528

CVE-2025-7856

  • CNNVD Published: 2025-07-19

Description (Chinese)

PHPGurukul Apartment Visitors Management System是PHPGurukul公司的一个公寓访客管理系统。 PHPGurukul Apartment Visitors Management System 1.0版本存在代码注入漏洞,该漏洞源于文件pass-details.php中参数visname处理不当导致跨站脚本。

Description (English)

PHPGurukul Partnership Systems is an apartment visitor management system of PHPGurukul. Version 1.0 of PHPGurukul Partnership Society has a code-injection loophole, which results from the inappropriate handling of the parameter visname in the pass-details.php.

Hazard Level

Critical

Vulnerability Type

代码注入

Affected Vendor

PHPGurukul

Published

2025-07-19

Last Modified

2026-02-24

References

https://github.com/HieuGITLAB/my-cves/issues/8 https://vuldb.com/?id.316969 https://vuldb.com/?ctiid.316969 https://phpgurukul.com/ https://vuldb.com/?submit.616843 https://access.redhat.com/security/cve/cve-2025-7856

Share on: