CVE-2025-44182: ANUJK305 Vehicle Record Management System
Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.
Phpgurukul Vehicle Record Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via the vehiclename, modelnumber, regnumber, vehiclesubtype, chasisnum, enginenumber' in the /admin/edit-vehicle.php component. This allows attackers to execute arbitrary code.
Affected products
- ANUJK305 Vehicle Record Management System: version 1.0 only
Published 2025-05-15. Last modified 2026-06-17.