CNNVD-202507-2529 Information

CNNVD ID

CNNVD-202507-2529

CVE-2025-7857

  • CNNVD Published: 2025-07-19

Description (Chinese)

PHPGurukul Apartment Visitors Management System是PHPGurukul公司的一个公寓访客管理系统。 PHPGurukul Apartment Visitors Management System 1.0版本存在代码注入漏洞,该漏洞源于文件bwdates-passreports-details.php中参数visname处理不当导致跨站脚本。

Description (English)

PHPGurukul Partnership Systems is an apartment visitor management system of PHPGurukul. Version 1.0 of PHPGurukul Partnership Management System has a code-injection loophole, which results from the mishandling of the parameter visname in document bwdates-passreports-details.php, resulting in a cross-site script.

Hazard Level

Critical

Vulnerability Type

代码注入

Affected Vendor

PHPGurukul

Published

2025-07-19

Last Modified

2026-02-24

References

https://vuldb.com/?ctiid.316970 https://vuldb.com/?id.316970 https://github.com/HieuGITLAB/my-cves/issues/9 https://vuldb.com/?submit.616867 https://phpgurukul.com/ https://access.redhat.com/security/cve/cve-2025-7857

Share on: