SQL Injection Vulnerability in PHPGurukul Student Record System
CVE-2024-44636

Currently unrated

Key Information:

Vendor

PHPGurukul

Vendor
CVE Published:
14 November 2025

What is CVE-2024-44636?

The PHPGurukul Student Record System version 3.20 is exposed to a SQL Injection vulnerability through the 'adminname' and 'aemailid' parameters in the '/admin-profile.php' file. This vulnerability could allow attackers to manipulate database queries, potentially leading to unauthorized access to sensitive information stored in the system. It is crucial for users of this version to apply necessary security measures and updates to protect against exploitation.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2024-44636 : SQL Injection Vulnerability in PHPGurukul Student Record System