CVE-2025-2674: PHPGurukul Bank Locker Management System aboutus.php sql injection
A vulnerability classified as critical was found in PHPGurukul Bank Locker Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /aboutus.php. The manipulation of the argument pagetitle leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2674?
CVE-2025-2674 is classified as a critical vulnerability.
How do I fix CVE-2025-2674?
To fix CVE-2025-2674, sanitize all input data in the file '/aboutus.php' to prevent SQL injection.
What is the impact of CVE-2025-2674?
The impact of CVE-2025-2674 allows remote attackers to execute SQL injection attacks through manipulated input.
Which systems are affected by CVE-2025-2674?
CVE-2025-2674 affects PHPGurukul Bank Locker Management System version 1.0.
Is CVE-2025-2674 exploitable remotely?
Yes, CVE-2025-2674 is exploitable remotely by manipulating the 'pagetitle' argument.