CVE-2020-10107: Phpgurukul Daily Expense Tracker System

Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.

PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS, as demonstrated by the ExpenseItem or ExpenseCost parameter in manage-expense.php.

Affected products

  • Phpgurukul Daily Expense Tracker System: version 1.0 only

Published 2020-03-05. Last modified 2026-06-17.