CVE-2025-2665: PHPGurukul Online Security Guards Hiring System bwdates-reports-details.php sql injection
A vulnerability was found in PHPGurukul Online Security Guards Hiring System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/bwdates-reports-details.php. The manipulation of the argument fromdate/todate leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2665?
CVE-2025-2665 has been classified as a critical vulnerability.
How does CVE-2025-2665 exploit SQL injection?
CVE-2025-2665 exploits a SQL injection vulnerability through manipulation of the 'fromdate' and 'todate' parameters in the file /admin/bwdates-reports-details.php.
What systems are affected by CVE-2025-2665?
CVE-2025-2665 affects the PHPGurukul Online Security Guards Hiring System version 1.0.
How can I fix CVE-2025-2665?
To fix CVE-2025-2665, input validation and parameterized queries should be implemented to prevent SQL injection attacks.
What parts of the application does CVE-2025-2665 impact?
CVE-2025-2665 impacts the /admin/bwdates-reports-details.php file in the application.