CVE-2025-2645: PHPGurukul Art Gallery Management System product.php cross site scripting
A vulnerability was found in PHPGurukul Art Gallery Management System 1.0. It has been classified as problematic. Affected is an unknown function of the file /product.php. The manipulation of the argument artname leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2645?
CVE-2025-2645 has been classified as problematic due to its potential for cross-site scripting attacks.
How do I fix CVE-2025-2645?
To fix CVE-2025-2645, ensure proper input validation and sanitization for the 'artname' parameter in the /product.php file.
What types of attacks can CVE-2025-2645 facilitate?
CVE-2025-2645 can facilitate cross-site scripting (XSS) attacks, allowing attackers to inject malicious scripts into web pages.
Which specific software is affected by CVE-2025-2645?
CVE-2025-2645 affects PHPGurukul Art Gallery Management System version 1.0.
What is the impact of exploiting CVE-2025-2645?
Exploiting CVE-2025-2645 can lead to unauthorized data manipulation and user session hijacking through XSS.