CVE-2024-44648: SQL Injection
Published Nov 17, 2025
·Updated
PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via id and adminremark parameters in quote-details.php.
Affected Software
2 affected components
Phpgurukul Small CRM
Phpgurukul Small CRM=3.0
Event History
Nov 17, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-44648?
CVE-2024-44648 has a high severity rating due to its potential for SQL Injection, which can lead to unauthorized database access.
2
How do I fix CVE-2024-44648?
To fix CVE-2024-44648, validate and sanitize the id and adminremark parameters in the quote-details.php file before processing them.
3
What software is affected by CVE-2024-44648?
CVE-2024-44648 affects PHPGurukul Small CRM version 3.0.
4
What type of vulnerability is CVE-2024-44648?
CVE-2024-44648 is an SQL Injection vulnerability that allows attackers to execute arbitrary SQL queries.
5
Can CVE-2024-44648 lead to data breaches?
Yes, if exploited, CVE-2024-44648 can lead to potential data breaches by allowing unauthorized access to sensitive information in the database.