PHPGURUKUL Vehicle Parking Management System v1.13 is vulnerable to SQL injection in the /vpms/users/login.php file. Attackers can inject malicious code from the parameter 'emailcont' and use it directly in SQL queries.
| Software | From | Fixed in |
|---|---|---|
| phpgurukul / vehicle_parking_management_system | 1.13 | 1.13.x |