Metrics
Affected Vendors & Products
| Source | ID | Title | 
|---|---|---|
  EUVD | 
                EUVD-2025-15690 | A vulnerability was found in PHPGurukul Car Rental Project 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/post-avehical.php. The manipulation of the argument img1/img2/img3/img4/img5 leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | 
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 21 May 2025 14:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Phpgurukul
         Phpgurukul car Rental Portal  | 
|
| CPEs | cpe:2.3:a:phpgurukul:car_rental_portal:1.0:*:*:*:*:*:*:* | |
| Vendors & Products | 
        
        Phpgurukul
         Phpgurukul car Rental Portal  | 
Mon, 19 May 2025 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Mon, 19 May 2025 09:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A vulnerability was found in PHPGurukul Car Rental Project 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/post-avehical.php. The manipulation of the argument img1/img2/img3/img4/img5 leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | PHPGurukul Car Rental Project post-avehical.php unrestricted upload | |
| Weaknesses | CWE-284 CWE-434  | 
|
| References | 
         | |
| Metrics | 
        
        cvssV2_0
         
 
 
 
  | 
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-05-19T14:28:07.770Z
Reserved: 2025-05-18T06:32:26.927Z
Link: CVE-2025-4926
Updated: 2025-05-19T14:25:38.378Z
Status : Analyzed
Published: 2025-05-19T10:15:21.327
Modified: 2025-05-21T12:46:59.150
Link: CVE-2025-4926
No data.
                        OpenCVE Enrichment
                    No data.
 EUVD