Skip to content
KitploitKITPLOIT
HerramientasBlog
Enviar
HerramientasBlog
Enviar

¡Herramientas de Hacking, PenTest y Ciberseguridad para tu Arsenal de Seguridad!

Kitploit es un directorio de herramientas de hacking, ciberseguridad y pentesting. Descubre las últimas actualizaciones de proyectos para encontrar vulnerabilidades, analizar sistemas, automatizar pruebas y fortalecer tu seguridad.

··Feeds·Contacto·Privacidad·© 2026 Kitploit

Directorio de Herramientas

Categorías

Ver todas las categorías
Loading categories
cve-2025-9933 — A vulnerability has been found in PHPGurukul Beauty Parlour Management System 1.1. Affected by this issue is some unknown functionality of the file /admin/view-appointment.php. Such manipulation of the argument viewid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | Kitploit
Herramientas/GitHubGitHub/titanmaster96/cve-2025-9933
Vulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingLearning & Education
GitHubtitanmaster96/cve-2025-9933

cve-2025-9933

Ver Repositorio

Más Populares

Ver todos →

Descubre las herramientas más usadas por nuestra comunidad.

Explora todas las herramientas

Explora nuestra colección de herramientas

Ver todas las herramientas →

Acerca de

hace 7 mesesAún no revisado

A vulnerability has been found in PHPGurukul Beauty Parlour Management System 1.1. Affected by this issue is some unknown functionality of the file /admin/view-appointment.php. Such manipulation of the argument viewid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

Compartir

🔒 Credencial para el panel de administración

Nombre de usuario: admin Contraseña: Test@123

Nombre de usuario: [email protected] Contraseña: Test@123

O registra un nuevo usuario.

Descripción

Se ha encontrado una vulnerabilidad en PHPGurukul Beauty Parlour Management System 1.1. Este problema afecta a una funcionalidad desconocida del archivo /admin/view-appointment.php. Dicha manipulación del argumento viewid conduce a una inyección SQL. El ataque puede lanzarse de forma remota. El exploit ha sido divulgado públicamente y puede ser utilizado.


Acceder a MySQL (Terminal)

docker compose exec db mysql -uuser -p

contraseña: userpass

USE salon; SHOW TABLES; SELECT * FROM tblbook;
Descargar herramienta