VYPR

PHP Education Management

by Iqbolshoh

CVEs (2)

  • CVE-2025-60781MedOct 20, 2025
    risk 0.40cvss 6.1epss 0.00

    PHP Education Manager v1.0 is vulnerable to Cross Site Scripting (XSS) in the worksheet.php file via the participant_name parameter.

  • CVE-2025-60782MedOct 2, 2025
    risk 0.35cvss 5.4epss 0.00

    PHP Education Manager v1.0 is vulnerable to Cross Site Scripting (XSS) stored Cross-Site Scripting (XSS) vulnerability in the topics management module (topics.php). Attackers can inject malicious JavaScript payloads into the Titlefield during topic creation or updates.