Cross Site Scripting Vulnerability in PHPGurukul Student Record System
CVE-2024-44635

Currently unrated

Key Information:

Vendor

PHPGurukul

Vendor
CVE Published:
14 November 2025

What is CVE-2024-44635?

The PHPGurukul Student Record System 3.20 is vulnerable to Cross Site Scripting (XSS). This vulnerability can be exploited through the adminname and aemailid parameters found in /admin-profile.php, allowing attackers to inject malicious scripts that could compromise user data and session integrity.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2024-44635 : Cross Site Scripting Vulnerability in PHPGurukul Student Record System