📦 Directory Management System

by Phpgurukul

🔍 What is Directory Management System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-31382

CRITICAL CVSS 9.8 Jun 16, 2022

Directory Management System v1.0 contains a SQL injection vulnerability in the search-dirctory.php file via the searchdata parameter. This allows attackers to execute arbitrary SQL commands on the dat...

CVE-2022-31384

CRITICAL CVSS 9.8 Jun 16, 2022

Directory Management System v1.0 contains a SQL injection vulnerability in the fullname parameter of add-directory.php. This allows attackers to execute arbitrary SQL commands on the database. Any org...

CVE-2022-29006

CRITICAL CVSS 9.8 May 11, 2022

CVE-2022-29006 is a critical SQL injection vulnerability in Directory Management System v1.0 that allows attackers to bypass authentication via the admin panel's username and password parameters. This...

CVE-2026-1160

HIGH CVSS 7.3 Jan 19, 2026

CVE-2026-1160 is a SQL injection vulnerability in PHPGurukul Directory Management System 1.0 that allows remote attackers to execute arbitrary SQL commands via the searchdata parameter in the search f...

CVE-2025-6330

HIGH CVSS 7.3 Jun 20, 2025

A critical SQL injection vulnerability in PHPGurukul Directory Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the searchdata parameter in /searchdata.php. This can...

CVE-2025-4698

HIGH CVSS 7.3 May 15, 2025

A critical SQL injection vulnerability in PHPGurukul Directory Management System 2.0 allows remote attackers to execute arbitrary SQL commands via the email parameter in /admin/forget-password.php. Th...

CVE-2025-4697

HIGH CVSS 7.3 May 15, 2025

A critical SQL injection vulnerability exists in PHPGurukul Directory Management System 2.0, specifically in the /admin/edit-directory.php file via the editid parameter. This allows remote attackers t...

CVE-2025-9656

MEDIUM CVSS 4.3 Aug 29, 2025

This is a cross-site scripting (XSS) vulnerability in PHPGurukul Directory Management System 2.0 that allows attackers to inject malicious scripts via the 'fullname' parameter in the /admin/add-direct...

CVE-2025-6333

MEDIUM CVSS 6.3 Jun 20, 2025

This critical SQL injection vulnerability in PHPGurukul Directory Management System 2.0 allows remote attackers to execute arbitrary SQL commands via the adminname parameter in /admin/admin-profile.ph...