CNNVD-202507-3548 Information

CNNVD ID

CNNVD-202507-3548

CVE-2025-50489

  • CNNVD Published: 2025-07-28

Description (Chinese)

PHPGurukul Student Result Management System是PHPGurukul公司的一个学生成绩管理系统。 PHPGurukul Student Result Management System v2.0版本存在安全漏洞,该漏洞源于组件/srms/change-password.php会话失效不当,可能导致会话劫持攻击。

Description (English)

PHPGurukul Stuart Research Management System is a student performance management system of PHPGurukul. There is a security loophole in version PHPGurukul Standard Management System v. 2.0, which arises from the improper failure of the component/srms/change-password.php session, which may lead to a session hijacking attack.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

PHPGurukul

Published

2025-07-28

Last Modified

2026-02-24

References

http://student.com https://github.com/VasilVK/CVE/tree/main/CVE-2025-50489 http://phpgurukul.com https://access.redhat.com/security/cve/cve-2025-50489

Share on: