CVE-2025-12311Low· 2.4▾ SunlitA vulnerability was detected in PHPGurukul Curfew e-Pass Management System 1.0. This issue affects some unknown processing of the file edit-category-detail.php. The manipulation of the argument catname results in cross site scripting. Th…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 13.2 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.3%
A vulnerability was detected in PHPGurukul Curfew e-Pass Management System 1.0. This issue affects some unknown processing of the file edit-category-detail.php. The manipulation of the argument catname results in cross site scripting. The attack can be launched remotely. The exploit is now public and may be used.
curfew_e-pass_management_system = 1.0Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-12312Low· 2.4A flaw has been found in PHPGurukul Curfew e-Pass Management System 1.0
CVE-2025-13577Low· 3.5A flaw has been found in PHPGurukul Hostel Management System 2.1
CVE-2025-12303Low· 2.4A flaw has been found in PHPGurukul Curfew e-Pass Management System 1.0
CVE-2026-90850Low· 2.4A vulnerability was detected in PHPGurukul Hostel Management System 3.0
CVE-2026-90845Low· 3.5A flaw has been found in PHPGurukul Daily Expense Tracker System 1.1
CVE-2022-35155Medium· 6.1Bus Pass Management System v1.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the searchdata parameter.