5.1
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was identified in PHPGurukul News Portal 1.0. This affects an unknown part of the component Profile Pic Handler. The manipulation leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.
Basic Information
ID
CVE-2026-1424
Source
VulDB
Published
Jan 26, 2026 at 07:02
Affected Product
Vendor
PHPGurukul
Product
News Portal
Version
1.0
Affected Versions
PHPGurukul News Portal 1.0