First published: Mon Mar 17 2025(Updated: )
A vulnerability, which was classified as problematic, was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. Affected is an unknown function of the file /profile.php of the component Admin Profile Page. The manipulation of the argument email leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
PHPGurukul Human Metapneumovirus | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-2375 has been classified as a problematic vulnerability affecting the PHPGurukul Human Metapneumovirus Testing Management System.
To fix CVE-2025-2375, ensure that the Admin Profile Page does not allow unauthorized email manipulation by sanitizing inputs and implementing proper validation.
CVE-2025-2375 affects the Admin Profile Page component in PHPGurukul Human Metapneumovirus Testing Management System version 1.0.
CVE-2025-2375 is a cross-site scripting (XSS) vulnerability that can be exploited through the email argument in the Admin Profile Page.
Version 1.0 of PHPGurukul Human Metapneumovirus Testing Management System is vulnerable to CVE-2025-2375.