CVE-2025-2034: PHPGurukul Pre-School Enrollment System edit-class.php sql injection
A vulnerability has been found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/edit-class.php?cid=1. The manipulation of the argument classname/capacity/classtiming leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2034?
CVE-2025-2034 is classified as a critical vulnerability.
How does CVE-2025-2034 affect the PHPGurukul Pre-School Enrollment System?
CVE-2025-2034 affects the functionality of the file /admin/edit-class.php?cid=1, allowing for SQL injection.
What are the consequences of exploiting CVE-2025-2034?
Exploitation of CVE-2025-2034 can lead to unauthorized access to the database and manipulation of data.
How can I mitigate the risks associated with CVE-2025-2034?
To mitigate the risks of CVE-2025-2034, validate and sanitize user inputs in the affected functionality.
Is there a patch available for CVE-2025-2034?
As of now, there is no official patch released for CVE-2025-2034, so immediate remediation steps should be taken.