PT-2025-47872 · Phpgurukul · Phpgurukul Hospital Management System

Harun.Tamokur

+1

·

Published

2025-11-24

·

Updated

2025-11-24

·

CVE-2025-13577

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions PHPGurukul Hostel Management System version 2.1
Description A cross site scripting issue exists in PHPGurukul Hostel Management System 2.1. The issue is located in an unknown function within the /register-complaint.php file. Manipulation of the cdetails argument can lead to cross site scripting, allowing for remote attacks. The exploit for this issue has been published.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2025-13577

Affected Products

Phpgurukul Hospital Management System