CVE-2025-45007: Phpgurukul Time Table Generator System

Medium severity, CVSS 4.8. EPSS: 0.3% chance of exploitation in the next 30 days.

A Reflected Cross-Site Scripting (XSS) vulnerability was discovered in the profile.php file of PHPGurukul Timetable Generator System v1.0. This vulnerability allows remote attackers to execute arbitrary JavaScript code via the adminname POST request parameter.

Affected products

  • Phpgurukul Time Table Generator System: version 1.0 only

Published 2025-04-30. Last modified 2026-06-17.