PT-2025-29457 · Phpgurukul · Phpgurukul Online Library Management System

F1Rstb100D

·

Published

2025-07-14

·

Updated

2025-07-14

·

CVE-2025-7601

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions: PHPGurukul Online Library Management System version 3.0
Description: A cross-site scripting issue exists in PHPGurukul Online Library Management System 3.0. The vulnerability is located in the /admin/student-history.php file. Manipulation of the stdid argument can lead to cross-site scripting. The exploit has been publicly disclosed.
Recommendations: Address the issue by sanitizing the stdid argument in the /admin/student-history.php file.

Exploit

Fix

Code Injection

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-7601

Affected Products

Phpgurukul Online Library Management System