Security Advisory

CVE-2025-45015

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-04-30 00:00:00
Last updated 2025-05-06 15:27:36
Assigner mitre
State PUBLISHED

Description

A Cross-Site Scripting (XSS) vulnerability was discovered in the foreigner-bwdates-reports-details.php file of PHPGurukul Park Ticketing Management System v2.0. The vulnerability allows remote attackers to inject arbitrary JavaScript code via the fromdate and todate parameters.