CVE-2024-55271: CSRF
Published Feb 17, 2026
·Updated
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in phpgurukul Gym Management System 1.0. This issue is present in the profile update functionality of the User Panel, specifically the /profile.php endpoint.
Affected Software
2 affected components
Phpgurukul Gym Management System
Phpgurukul Gym Management System=1.0
Event History
Feb 17, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:21 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-55271?
CVE-2024-55271 has been classified as a medium severity Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2024-55271?
To fix CVE-2024-55271, implement anti-CSRF tokens in the profile update functionality of the User Panel.
3
What components of the Phpgurukul Gym Management System are affected by CVE-2024-55271?
CVE-2024-55271 specifically affects the /profile.php endpoint in the User Panel.
4
Can CVE-2024-55271 lead to unauthorized actions?
Yes, CVE-2024-55271 can allow an attacker to perform unauthorized actions by tricking users into submitting requests.
5
Which version of Phpgurukul Gym Management System is vulnerable to CVE-2024-55271?
CVE-2024-55271 affects Phpgurukul Gym Management System version 1.0.