CVE-2025-2090: PHPGurukul Pre-School Enrollment System Sub Admin add-subadmin.php access control
A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/add-subadmin.php of the component Sub Admin Handler. The manipulation leads to improper access controls. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2090?
CVE-2025-2090 is classified as a critical vulnerability.
How does CVE-2025-2090 affect PHPGurukul Pre-School Enrollment System?
CVE-2025-2090 affects the Sub Admin Handler functionality, specifically in the file /admin/add-subadmin.php.
What are the consequences of CVE-2025-2090?
The vulnerability leads to improper access controls, potentially allowing unauthorized access.
Is CVE-2025-2090 a remote or local vulnerability?
CVE-2025-2090 is classified as a local vulnerability that requires access to the affected system.
What steps should be taken to remediate CVE-2025-2090?
To fix CVE-2025-2090, ensure proper access controls are implemented in the affected code.