CVE Details
Basic Information
| Title | PHPGurukul Apartment Visitors Management System HTTP POST Request search-visitor.php cross site scripting |
|---|---|
| Type | cve |
| Published | 2025-07-22T00:02:06.214Z |
| Modified | 2025-07-22T00:02:06.214Z |
Product Information
| Vendor | PHPGurukul |
|---|---|
| Product | Apartment Visitors Management System |
| Version | 1.0 |
CVSS Information
| Base Score | 5.3 (MEDIUM) |
|---|---|
| Attack Vector | CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P |
AI Analysis
| AI Description | This vulnerability allows remote attackers to inject arbitrary scripts via the searchdata parameter in the search-visitor.php file, leading to cross-site scripting (XSS). |
|---|---|
| AI Severity | Medium |
| AI Vendor | PHPGurukul |
| AI Product | Apartment Visitors Management System |
| AI Version | 1.0 |
Affected Products
- PHPGurukul Apartment Visitors Management System 1.0
Additional Information
| CWE List | CWE-79, CWE-94 |
|---|---|
| Source | VulDB |
Description
A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /search-visitor.php of the component HTTP POST Request Handler. The manipulation of the argument searchdata leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.