A vulnerability, which was classified as critical, has been found in PHPGurukul Nipah Virus Testing Management System 1.0. This issue affects some unknown processing of the file /profile.php. The manipulation of the argument adminname/mobilenumber leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
References
Link | Resource |
---|---|
https://github.com/changan520374/cve/issues/1 | Exploit Issue Tracking Third Party Advisory |
https://phpgurukul.com/ | Product |
https://vuldb.com/?ctiid.306389 | Permissions Required |
https://vuldb.com/?id.306389 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.558628 | Third Party Advisory VDB Entry |
https://github.com/changan520374/cve/issues/1 | Exploit Issue Tracking Third Party Advisory |
Configurations
History
05 May 2025, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-04-28 16:15
Updated : 2025-05-05 13:15
NVD link : CVE-2025-4026
Mitre link : CVE-2025-4026
CVE.ORG link : CVE-2025-4026
JSON object : View
Products Affected
phpgurukul
- nipah_virus_testing_management_system