CVE-2025-6288: PHPGurukul Bus Pass Management System Profile Page admin-profile.php cross site scripting
Published Jun 20, 2025
·Updated
A vulnerability, which was classified as problematic, has been found in PHPGurukul Bus Pass Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/admin-profile.php of the component Profile Page. The manipulation of the argument profile name leads to cross site scripting. The attack may be launched remotely.
Affected Software
2 affected components
Phpgurukul Bus Pass Management System
Anujk305 Bus Pass Management System=1.0
Event History
Jun 20, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
Jan 12, 57458
Event
via FIRST·03:27 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-6288?
CVE-2025-6288 is classified as a problematic vulnerability.
2
How do I fix CVE-2025-6288?
To mitigate CVE-2025-6288, review and secure the profile page functionality in the Bus Pass Management System.
3
What component is affected by CVE-2025-6288?
CVE-2025-6288 affects the profile page functionality in the /admin/admin-profile.php file.
4
What type of vulnerability is CVE-2025-6288?
CVE-2025-6288 is a manipulation vulnerability related to input handling.
5
Which versions of the Bus Pass Management System are affected by CVE-2025-6288?
CVE-2025-6288 affects the PHPGurukul Bus Pass Management System 1.0.