CVE-2025-2383: PHPGurukul Doctor Appointment Management System search.php sql injection
A vulnerability, which was classified as critical, has been found in PHPGurukul Doctor Appointment Management System 1.0. Affected by this issue is some unknown functionality of the file /doctor/search.php. The manipulation of the argument searchdata leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2383?
CVE-2025-2383 is classified as a critical vulnerability.
How does CVE-2025-2383 affect the Doctor Appointment Management System?
CVE-2025-2383 allows for SQL injection through the searchdata parameter in the /doctor/search.php file.
What are the potential impacts of exploiting CVE-2025-2383?
Exploitation of CVE-2025-2383 can lead to unauthorized access to the database and manipulation of data.
How do I fix CVE-2025-2383?
To fix CVE-2025-2383, validate and sanitize user input in the searchdata parameter to prevent SQL injection.
Is there a patch available for CVE-2025-2383?
As of now, there is no information regarding a patch for CVE-2025-2383.