Ashutosh Singh Umath

2 exploits Active since Oct 2023
CVE-2023-40852 EXPLOITDB CRITICAL text WRITEUP
Phpgurukul <3.0 - SQL Injection
SQL Injection vulnerability in Phpgurukul User Registration & Login and User Management System With admin panel 3.0 allows attackers to obtain sensitive information via crafted string in the admin user name field on the admin log in page.
CVSS 9.8
CVE-2023-40851 EXPLOITDB MEDIUM text WORKING POC
Phpgurukul <3.0 - XSS
Cross Site Scripting (XSS) vulnerability in Phpgurukul User Registration & Login and User Management System With admin panel 3.0 allows attackers to run arbitrary code via fname, lname, email, and contact fields of the user registration page.
CVSS 5.4