CVE-2025-10663: PHPGurukul Online Course Registration my-profile.php sql injection
A vulnerability was found in PHPGurukul Online Course Registration 3.1. This affects an unknown function of the file /my-profile.php. Performing manipulation of the argument cgpa results in sql injection. The attack may be initiated remotely. The exploit has been made public and could be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10663?
CVE-2025-10663 is classified as a high severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2025-10663?
To fix CVE-2025-10663, update to a patched version of the PHPGurukul Online Course Registration software that resolves the SQL injection issue.
What type of vulnerability is CVE-2025-10663?
CVE-2025-10663 is a SQL injection vulnerability that occurs in the 'my-profile.php' file when manipulating the 'cgpa' argument.
Who is affected by CVE-2025-10663?
CVE-2025-10663 affects users and administrators of the PHPGurukul Online Course Registration version 3.1.
Can CVE-2025-10663 be exploited remotely?
Yes, CVE-2025-10663 can be exploited remotely by attackers targeting the vulnerable 'my-profile.php' file.