CVE-2025-56710
15.09.2025, 14:15
A Cross-Site Request Forgery (CSRF) vulnerability was identified in the Profile Page of the PHPGurukul Student-Result-Management-System-Using-PHP-V2.0. This flaw allows an attacker to trick authenticated users into unintentionally modifying their account details. By crafting a malicious HTML page, an attacker can submit unauthorized requests to the vulnerable endpoint: /create-class.php.
| Vendor | Product | Version | 
|---|---|---|
| phpgurukul | student_result_management_system | 2.0 | 
𝑥
= Vulnerable software versions
Common Weakness Enumeration