Bus Pass Management System 1.0 was discovered to contain a SQL Injection vulnerability via the searchdata parameter at /buspassms/download-pass.php..
References
| Link | Resource |
|---|---|
| http://bus.com | Not Applicable |
| http://phpgurukul.com | Not Applicable |
| https://packetstormsecurity.com/files/168555/Bus-Pass-Management-System-1.0-Cross-Site-Scripting.html | Exploit Third Party Advisory VDB Entry |
| https://www.exploit-db.com/exploits/50543 | |
| http://bus.com | Not Applicable |
| http://phpgurukul.com | Not Applicable |
| https://packetstormsecurity.com/files/168555/Bus-Pass-Management-System-1.0-Cross-Site-Scripting.html | Exploit Third Party Advisory VDB Entry |
Configurations
History
12 Nov 2025, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Nov 2024, 07:10
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2022-09-30 19:15
Updated : 2025-11-12 15:15
NVD link : CVE-2022-35156
Mitre link : CVE-2022-35156
CVE.ORG link : CVE-2022-35156
JSON object : View
Products Affected
phpgurukul
- bus_pass_management_system
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
