CVE-2025-1900: PHPGurukul Restaurant Table Booking System add-table.php sql injection
Published Mar 4, 2025
·Updated
A vulnerability was found in PHPGurukul Restaurant Table Booking System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /add-table.php. The manipulation of the argument tableno leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Phpgurukul Restaurant Table Booking System
Phpgurukul Restaurant Table Booking System=1.0
Event History
Mar 4, 2025
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-1900?
CVE-2025-1900 is classified as a critical vulnerability.
2
How do I fix CVE-2025-1900?
To fix CVE-2025-1900, sanitize and validate all user inputs, especially the 'tableno' parameter in /add-table.php.
3
What type of vulnerability is CVE-2025-1900?
CVE-2025-1900 is an SQL injection vulnerability.
4
Which software is affected by CVE-2025-1900?
CVE-2025-1900 affects PHPGurukul Restaurant Table Booking System version 1.0.
5
Can CVE-2025-1900 be exploited remotely?
Yes, CVE-2025-1900 can be exploited remotely by manipulating the 'tableno' argument.