📦 Complaint Management System

by Phpgurukul

🔍 What is Complaint Management System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-57150

HIGH CVSS 7.2 Sep 3, 2025

This vulnerability allows attackers to inject malicious scripts into the Complaint Management System's admin interface via the categoryName parameter. When an administrator views the affected page, th...

CVE-2025-57147

HIGH CVSS 7.5 Sep 3, 2025

A SQL injection vulnerability in phpgurukul Complaint Management System 2.0 allows attackers to execute arbitrary SQL commands through the registration form. This affects all users of the vulnerable s...

CVE-2024-12229

HIGH CVSS 7.3 Dec 5, 2024

This critical SQL injection vulnerability in PHPGurukul Complaint Management System 1.0 allows attackers to execute arbitrary SQL commands through the search parameter in /admin/complaint-search.php. ...

CVE-2024-12228

HIGH CVSS 7.3 Dec 5, 2024

This critical SQL injection vulnerability in PHPGurukul Complaint Management System 1.0 allows attackers to manipulate database queries through the search parameter in /admin/user-search.php. Attacker...

CVE-2024-11967

HIGH CVSS 7.3 Nov 28, 2024

This critical SQL injection vulnerability in PHPGurukul Complaint Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the email parameter in the password reset function...

CVE-2024-11965

HIGH CVSS 7.3 Nov 28, 2024

This critical SQL injection vulnerability in PHPGurukul Complaint Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the email parameter in the password reset function...

CVE-2024-46335

MEDIUM CVSS 4.6 Nov 17, 2025

PHPGurukul Complaint Management System 2.0 contains a cross-site scripting (XSS) vulnerability in the fromdate and todate parameters of between-date-userreport.php. This allows attackers to inject mal...

CVE-2024-44654

MEDIUM CVSS 6.5 Nov 17, 2025

This vulnerability allows attackers to execute arbitrary SQL commands through the email and mobileno parameters in reset-password.php. It affects PHPGurukul Complaint Management System 2.0 installatio...

CVE-2024-44655

MEDIUM CVSS 6.1 Nov 17, 2025

PHPGurukul Complaint Management System 2.0 contains a cross-site scripting vulnerability in the search parameter of user-search.php. This allows attackers to inject malicious scripts that execute in u...

CVE-2024-44658

MEDIUM CVSS 6.5 Nov 17, 2025

PHPGurukul Complaint Management System 2.0 contains a SQL injection vulnerability in the subcategory.php file, allowing attackers to manipulate database queries through the subcategory and category pa...

CVE-2024-44657

MEDIUM CVSS 6.5 Nov 17, 2025

PHPGurukul Complaint Management System 2.0 contains a SQL injection vulnerability in the between-date-userreport.php file. Attackers can exploit the fromdate and todate parameters to execute arbitrary...

CVE-2025-5659

MEDIUM CVSS 6.3 Jun 5, 2025

This critical SQL injection vulnerability in PHPGurukul Complaint Management System 2.0 allows attackers to manipulate database queries through the pincode parameter in /user/profile.php. Remote attac...

CVE-2025-5656

MEDIUM CVSS 6.3 Jun 5, 2025

This critical SQL injection vulnerability in PHPGurukul Complaint Management System 2.0 allows remote attackers to execute arbitrary SQL commands via the description parameter in /admin/edit-category....

CVE-2025-5654

MEDIUM CVSS 6.3 Jun 5, 2025

This critical SQL injection vulnerability in PHPGurukul Complaint Management System 2.0 allows attackers to manipulate database queries through the description parameter in /admin/edit-state.php. Atta...

CVE-2025-5652

MEDIUM CVSS 6.3 Jun 5, 2025

This critical vulnerability in PHPGurukul Complaint Management System 2.0 allows remote attackers to execute SQL injection attacks via the fromdate/todate parameters in the /admin/between-date-complai...

CVE-2024-12977

MEDIUM CVSS 6.3 Dec 27, 2024

This critical SQL injection vulnerability in PHPGurukul Complaint Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the 'state' parameter in /admin/state.php. This ca...