{"id":71096,"date":"2025-10-07T15:45:43","date_gmt":"2025-10-07T12:15:43","guid":{"rendered":"https:\/\/afaghhosting.net\/blog\/cve-2025-11390-phpgurukul-cyber-cafe-management-system-post-parameter-search-php-cross-site-scripting\/"},"modified":"2025-10-07T15:45:43","modified_gmt":"2025-10-07T12:15:43","slug":"cve-2025-11390-phpgurukul-cyber-cafe-management-system-post-parameter-search-php-cross-site-scripting","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/cve-2025-11390-phpgurukul-cyber-cafe-management-system-post-parameter-search-php-cross-site-scripting\/","title":{"rendered":"CVE-2025-11390 &#8211; PHPGurukul Cyber Cafe Management System POST Parameter search.php cross site scripting"},"content":{"rendered":"<p>CVE ID : CVE-2025-11390<\/p>\n<p>Published :  Oct. 7, 2025, 12:15 p.m. | 19\u00a0minutes ago<\/p>\n<p>Description : A weakness has been identified in PHPGurukul Cyber Cafe Management System 1.0. Affected by this vulnerability is an unknown functionality of the file \/search.php of the component POST Parameter Handler. Executing manipulation of the argument searchdata can lead to cross site scripting. The attack can be executed remotely. The exploit has been made available to the public and could be exploited.<\/p>\n<p>Severity: 5.3 | MEDIUM<\/p>\n<p>Visit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;\u00a0<\/p>\n","protected":false},"excerpt":{"rendered":"<p>CVE ID : CVE-2025-11390 Published : Oct. 7, 2025, 12:15 p.m. | 19\u00a0minutes ago Description : A weakness has been identified in PHPGurukul Cyber Cafe Management System 1.0. Affected by this vulnerability is an unknown functionality of the file \/search.php of the component POST Parameter Handler. Executing manipulation of the argument searchdata can lead to &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-71096","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/71096","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=71096"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/71096\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=71096"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=71096"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=71096"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}