VYPR

Event Management System

by PuneethReddyHC

CVEs (2)

  • CVE-2025-56243MedOct 7, 2025
    risk 0.40cvss 6.1epss 0.00

    A Cross-Site Scripting (XSS) vulnerability was found in the register.php page of PuneethReddyHC Event Management System 1.0, where the event_id GET parameter is improperly handled. An attacker can craft a malicious URL to execute arbitrary JavaScript in the victim s browser by…

  • CVE-2025-56605MedFeb 26, 2026
    risk 0.35cvss 5.4epss 0.00

    A reflected Cross-Site Scripting (XSS) vulnerability exists in the register.php backend script of PuneethReddyHC Event Management System 1.0. The mobile POST parameter is improperly validated and echoed back in the HTTP response without sanitization, allowing an attacker to…