First published: Sun Feb 23 2025(Updated: )
A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /search-report-result.php. The manipulation of the argument searchdata leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The initial researcher advisory mentions contradicting parameter names to be affected.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
PHPGurukul Nipah Virus Testing Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-1580 has been classified as critical due to its potential for SQL injection.
To fix CVE-2025-1580, input validation and prepared statements should be implemented in the search functionality.
CVE-2025-1580 affects the PHPGurukul Nipah Virus Testing Management System version 1.0.
CVE-2025-1580 allows attackers to execute SQL injection attacks through the searchdata parameter.
CVE-2025-1580 was reported in 2025, highlighting a critical security issue in the affected software.