SQL Injection Vulnerability in PHPGurukul Student Record System
CVE-2024-44640

Currently unrated

Key Information:

Vendor

PHPGurukul

Vendor
CVE Published:
14 November 2025

What is CVE-2024-44640?

The PHPGurukul Student Record System version 3.20 suffers from a SQL Injection vulnerability, which can be exploited through the course-short, course-full, and cdate parameters in the add-course.php file. Attackers may leverage this weakness to manipulate database queries, potentially leading to unauthorized access to sensitive data and compromising the integrity of the system.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2024-44640 : SQL Injection Vulnerability in PHPGurukul Student Record System