📦 Park Ticketing Management System

by Phpgurukul

🔍 What is Park Ticketing Management System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-56074

CRITICAL CVSS 9.8 Sep 22, 2025

A SQL injection vulnerability in PHPGurukul Park Ticketing Management System v2.0 allows remote attackers to execute arbitrary SQL commands via the fromdate parameter. This affects all systems running...

CVE-2025-45017

CRITICAL CVSS 9.8 Apr 30, 2025

A critical SQL injection vulnerability in PHPGurukul Park Ticketing Management System v2.0 allows remote attackers to execute arbitrary SQL commands via the tprice parameter in edit-ticket.php. This c...

CVE-2023-26959

CRITICAL CVSS 9.8 Mar 27, 2023

CVE-2023-26959 is a critical SQL injection vulnerability in Phpgurukul Park Ticketing Management System 1.0 that allows attackers to bypass authentication and potentially gain unauthorized access to t...

CVE-2025-4153

HIGH CVSS 7.3 May 1, 2025

A critical SQL injection vulnerability exists in PHPGurukul Park Ticketing Management System 2.0 through the adminname parameter in /profile.php. This allows remote attackers to execute arbitrary SQL ...

CVE-2025-45020

HIGH CVSS 7.2 Apr 30, 2025

This SQL injection vulnerability in PHPGurukul Park Ticketing Management System v2.0 allows remote attackers to execute arbitrary SQL commands via the todate parameter in a POST request to normal-bwda...

CVE-2025-4808

MEDIUM CVSS 6.3 May 16, 2025

This critical SQL injection vulnerability in PHPGurukul Park Ticketing Management System 2.0 allows remote attackers to execute arbitrary SQL commands via parameters in the /add-normal-ticket.php file...

CVE-2025-4781

MEDIUM CVSS 6.3 May 16, 2025

A critical SQL injection vulnerability exists in PHPGurukul Park Ticketing Management System 2.0 through the /forgot-password.php endpoint. Attackers can remotely exploit this by manipulating email/co...

CVE-2025-45011

MEDIUM CVSS 5.3 Apr 30, 2025

A HTML injection vulnerability in PHPGurukul Park Ticketing Management System v2.0 allows remote attackers to inject malicious HTML/JavaScript via the searchdata parameter. This affects all installati...

CVE-2025-45019

MEDIUM CVSS 5.4 Apr 30, 2025

A SQL injection vulnerability in PHPGurukul Park Ticketing Management System v2.0 allows remote attackers to execute arbitrary SQL commands via the cprice parameter in the /add-foreigners-ticket.php e...

CVE-2025-45009

MEDIUM CVSS 5.3 Apr 30, 2025

A HTML injection vulnerability in PHPGurukul Park Ticketing Management System v2.0 allows remote attackers to inject malicious HTML/JavaScript via the searchdata parameter in normal-search.php. This a...

CVE-2023-26958

MEDIUM CVSS 4.8 Mar 27, 2023

This stored XSS vulnerability in Phpgurukul Park Ticketing Management System 1.0 allows attackers to inject malicious scripts via the Admin Name parameter. When exploited, these scripts execute in the...