PHPGurukul Job Portal

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in PHPGurukul Job Portal.

By the Year

In 2026 there have been 0 vulnerabilities in PHPGurukul Job Portal. Job Portal did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 0 0.00
2024 11 7.24
2023 0 0.00
2022 0 0.00
2021 0 0.00
2020 1 9.80

It may take a day or so for new Job Portal vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent PHPGurukul Job Portal Security Vulnerabilities

JSXSS: JobPortal Admin login.php vulnerable to XSS via user_email
CVE-2024-8473 6.1 - Medium - September 05, 2024

Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted. Exploitation of this vulnerability could allow an attacker to retrieve the session details of an authenticated user through user_email parameter in /jobportal/admin/login.php.

XSS

JobPortal XSS via unsecured params in /jobportal/index.php
CVE-2024-8472 6.1 - Medium - September 05, 2024

Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted. Exploitation of this vulnerability could allow an attacker to retrieve the session details of an authenticated user through multiple parameters in /jobportal/index.php.

XSS

XSS in JobPortal process.php: session hijack via JOBID/USERNAME
CVE-2024-8471 6.1 - Medium - September 05, 2024

Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted. Exploitation of this vulnerability could allow an attacker to retrieve the session details of an authenticated user through JOBID and USERNAME parameters in /jobportal/process.php.

XSS

JobPortal PHP SQLi via CATEGORY param in /admin/vacancy/controller.php
CVE-2024-8470 7.5 - High - September 05, 2024

SQL injection vulnerability, by which an attacker could send a specially designed query through CATEGORY parameter in /jobportal/admin/vacancy/controller.php, and retrieve all the information stored in it.

SQL Injection

JobPortal Admin Employee Index SQLi via id param
CVE-2024-8469 7.5 - High - September 05, 2024

SQL injection vulnerability, by which an attacker could send a specially designed query through id parameter in /jobportal/admin/employee/index.php, and retrieve all the information stored in it.

SQL Injection

SQL Injection via search param in JobPortal index.php
CVE-2024-8468 7.5 - High - September 05, 2024

SQL injection vulnerability, by which an attacker could send a specially designed query through search parameter in /jobportal/index.php, and retrieve all the information stored in it.

SQL Injection

SQLi in JobPortal Admin Category /index.php (id param)
CVE-2024-8467 7.5 - High - September 05, 2024

SQL injection vulnerability, by which an attacker could send a specially designed query through id parameter in /jobportal/admin/category/index.php, and retrieve all the information stored in it.

SQL Injection

SQL Injection via CATEGORY param in JobPortal /admin/category/controller.php
CVE-2024-8466 7.5 - High - September 05, 2024

SQL injection vulnerability, by which an attacker could send a specially designed query through CATEGORY parameter in /jobportal/admin/category/controller.php, and retrieve all the information stored in it.

SQL Injection

SQLi in JobPortal Admin User Controller (user_id param)
CVE-2024-8465 7.5 - High - September 05, 2024

SQL injection vulnerability, by which an attacker could send a specially designed query through user_id parameter in /jobportal/admin/user/controller.php, and retrieve all the information stored in it.

SQL Injection

SQLi in JobPortal Admin /applicants/controller.php via JOBREGID
CVE-2024-8464 7.5 - High - September 05, 2024

SQL injection vulnerability, by which an attacker could send a specially designed query through JOBREGID parameter in /jobportal/admin/applicants/controller.php, and retrieve all the information stored in it.

SQL Injection

PHPGurukul Job Portal 1.0 RCE via Webshell After Upload Restriction Bypass
CVE-2024-8463 8.8 - High - September 05, 2024

File upload restriction bypass vulnerability in PHPGurukul Job Portal 1.0, the exploitation of which could allow an authenticated user to execute an RCE via webshell.

Unrestricted File Upload

An unauthenticated file upload vulnerability has been identified in admin/gallery.php in PHPGurukul Job Portal 1.0
CVE-2020-10225 9.8 - Critical - March 08, 2020

An unauthenticated file upload vulnerability has been identified in admin/gallery.php in PHPGurukul Job Portal 1.0. The vulnerability could be exploited by an unauthenticated remote attacker to upload content to the server, including PHP files, which could result in command execution.

Unrestricted File Upload

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for PHPGurukul Job Portal or by PHPGurukul? Click the Watch button to subscribe.

 

PHPGurukul
Vendor

 
subscribe