ZeroHour

CVE-2025-45007

PoC
CVSS 3.1
4.8 medium
EPSS
<1%p23
Published
()
Modified
Description

A Reflected Cross-Site Scripting (XSS) vulnerability was discovered in the profile.php file of PHPGurukul Timetable Generator System v1.0. This vulnerability allows remote attackers to execute arbitrary JavaScript code via the adminname POST request parameter.

Vendors
phpgurukul
Products
time table generator system
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.