CNNVD-202511-1901 Information

CNNVD ID

CNNVD-202511-1901

CVE-2024-44647

  • CNNVD Published: 2025-11-17

Description (Chinese)

PHPGurukul Small CRM是PHPGurukul公司的一套客户关系管理系统。 PHPGurukul Small CRM 3.0版本存在安全漏洞,该漏洞源于manage-tickets.php中aremark参数未经验证,可能导致跨站脚本攻击。

Description (English)

PHPGurukul Small CRM is a customer relationship management system for PHPGurukul. Version 3.0 of PHPGurukul Small CRM contains a security loophole that originates from unverified aremark parameters in manage-tickets.php and may result in a cross-station script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

PHPGurukul

Published

2025-11-17

Last Modified

2026-02-24

References

https://github.com/leexsoyoung/CVEs/blob/main/CVE-2024-44647.md https://phpgurukul.com/small-crm-php/ https://access.redhat.com/security/cve/cve-2024-44647

Share on: