📦 Online Fire Reporting System

by Phpgurukul

🔍 What is Online Fire Reporting System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-40690

CRITICAL CVSS 9.8 Sep 11, 2025

This SQL injection vulnerability in Online Fire Reporting System v1.2 allows attackers to manipulate the 'teamid' parameter in '/ofrs/admin/edit-team.php' to execute arbitrary SQL commands, potentiall...

CVE-2025-40692

CRITICAL CVSS 9.8 Sep 11, 2025

This SQL injection vulnerability in Online Fire Reporting System v1.2 allows attackers to manipulate database queries through the 'requestid' parameter, potentially accessing, modifying, or deleting s...

CVE-2025-40687

CRITICAL CVSS 9.8 Sep 11, 2025

This SQL injection vulnerability in Online Fire Reporting System v1.2 allows attackers to manipulate database queries through the 'mobilenumber', 'teamleadname', and 'teammember' parameters. Attackers...

CVE-2024-34987

CRITICAL CVSS 9.1 Jun 3, 2024

This SQL injection vulnerability in PHPGurukul Online Fire Reporting System allows attackers to bypass authentication by injecting malicious SQL commands into the username field during login. Attacker...

CVE-2025-3239

HIGH CVSS 7.3 Apr 4, 2025

This critical SQL injection vulnerability in PHPGurukul Online Fire Reporting System 1.2 allows remote attackers to execute arbitrary SQL commands via the editid parameter in /admin/edit-guard-detail....

CVE-2025-3238

HIGH CVSS 7.3 Apr 4, 2025

A critical SQL injection vulnerability exists in PHPGurukul Online Fire Reporting System 1.2, specifically in the /search-request.php file's searchdata parameter. This allows remote attackers to execu...

CVE-2025-40695

MEDIUM CVSS 5.4 Sep 11, 2025

A stored cross-site scripting (XSS) vulnerability in Online Fire Reporting System v1.2 allows authenticated attackers to inject malicious scripts via 'remark', 'status', and 'takeaction' parameters. T...

CVE-2025-40696

MEDIUM CVSS 5.4 Sep 11, 2025

This stored cross-site scripting (XSS) vulnerability in Online Fire Reporting System v1.2 allows authenticated attackers to inject malicious scripts into user input fields. When other authenticated us...

CVE-2025-40694

MEDIUM CVSS 5.4 Sep 11, 2025

This stored cross-site scripting vulnerability in Online Fire Reporting System v1.2 allows authenticated attackers to inject malicious scripts via date parameters. When exploited, it can steal authent...

CVE-2025-7563

MEDIUM CVSS 6.3 Jul 14, 2025

A critical SQL injection vulnerability exists in PHPGurukul Online Fire Reporting System 1.2, specifically in the /admin/completed-requests.php file via the teamid parameter. This allows remote attack...

CVE-2025-7560

MEDIUM CVSS 6.3 Jul 14, 2025

This critical SQL injection vulnerability in PHPGurukul Online Fire Reporting System 1.2 allows remote attackers to manipulate database queries via the teamid parameter in /admin/workin-progress-reque...

CVE-2025-5618

MEDIUM CVSS 6.3 Jun 4, 2025

This critical SQL injection vulnerability in PHPGurukul Online Fire Reporting System 1.2 allows attackers to manipulate database queries through the teamid parameter in /admin/edit-team.php. Attackers...

CVE-2025-5616

MEDIUM CVSS 6.3 Jun 4, 2025

This critical SQL injection vulnerability in PHPGurukul Online Fire Reporting System 1.2 allows attackers to manipulate database queries through the mobilenumber parameter in /admin/profile.php. Remot...

CVE-2025-5614

MEDIUM CVSS 6.3 Jun 4, 2025

This critical SQL injection vulnerability in PHPGurukul Online Fire Reporting System 1.2 allows attackers to manipulate database queries through the 'serachdata' parameter in /search-report-result.php...

CVE-2025-5612

MEDIUM CVSS 6.3 Jun 4, 2025

This critical SQL injection vulnerability in PHPGurukul Online Fire Reporting System 1.2 allows attackers to manipulate database queries via the 'fullname' parameter in reporting.php. Remote attackers...