PHPGurukul COVID19 Testing Management System profile.php sql injection
Published Apr 28, 2025
6.9
MEDIUMCVSS 4.0
EPSS 0.52%
Description
A vulnerability has been found in PHPGurukul COVID19 Testing Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /profile.php. The manipulation of the argument mobilenumber leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
Affected products
-
Affected
- 1.0
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| PHP Gurukul | COVID19 Testing Management System | unknown | Affected
|
- 1.0
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (6)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-12576 Advisory
- https://github.com/JunZ-Leo/CVE/issues/1 exploitissue-trackingIssue Tracking
- https://phpgurukul.com/ product
- https://vuldb.com/?ctiid.306391 signaturepermissions-requiredPermissions RequiredVDB Entry
- https://vuldb.com/?id.306391 vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry
- https://vuldb.com/?submit.559193 third-party-advisoryThird Party AdvisoryVDB Entry
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-12576 | Advisory | |
| https://github.com/JunZ-Leo/CVE/issues/1 | exploitissue-trackingIssue Tracking | |
| https://phpgurukul.com/ | product | |
| https://vuldb.com/?ctiid.306391 | signaturepermissions-requiredPermissions RequiredVDB Entry | |
| https://vuldb.com/?id.306391 | vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry | |
| https://vuldb.com/?submit.559193 | third-party-advisoryThird Party AdvisoryVDB Entry |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
Red Hat
No data
GitHub
No data