PT-2026-4200 · Unknown · Phpgurukul Online Course Registration System

Published

2026-01-22

·

Updated

2026-02-02

·

CVE-2025-70899

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions PHPgurukul Online Course Registration version 3.1
Description The application lacks Cross-Site Request Forgery (CSRF) protection on all administrative forms. An attacker can perform unauthorized actions on behalf of authenticated administrators by tricking them into visiting a malicious webpage.
Recommendations Implement CSRF protection on all administrative forms.

Exploit

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2025-70899

Affected Products

Phpgurukul Online Course Registration System