Description
A HTML Injection vulnerability was discovered in the normal-bwdates-reports-details.php file of PHPGurukul Park Ticketing Management System v2.0. This vulnerability allows remote attackers to execute arbitrary code via the fromdate and todate POST request parameters.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-12722 | A HTML Injection vulnerability was discovered in the normal-bwdates-reports-details.php file of PHPGurukul Park Ticketing Management System v2.0. This vulnerability allows remote attackers to execute arbitrary code via the fromdate and todate POST request parameters. |
References
History
Fri, 09 May 2025 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Phpgurukul
Phpgurukul park Ticketing Management System |
|
| CPEs | cpe:2.3:a:phpgurukul:park_ticketing_management_system:2.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Phpgurukul
Phpgurukul park Ticketing Management System |
Wed, 30 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-77 | |
| Metrics |
cvssV3_1
|
Wed, 30 Apr 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A HTML Injection vulnerability was discovered in the normal-bwdates-reports-details.php file of PHPGurukul Park Ticketing Management System v2.0. This vulnerability allows remote attackers to execute arbitrary code via the fromdate and todate POST request parameters. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-30T15:41:18.579Z
Reserved: 2025-04-22T00:00:00.000Z
Link: CVE-2025-45010
Updated: 2025-04-30T15:41:13.097Z
Status : Analyzed
Published: 2025-04-30T14:15:29.080
Modified: 2025-05-09T13:45:09.930
Link: CVE-2025-45010
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD