First published: Thu Apr 03 2025(Updated: )
A vulnerability, which was classified as critical, was found in PHPGurukul Online Security Guards Hiring System 1.0. Affected is an unknown function of the file /admin/changeimage.php. The manipulation of the argument editid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Online Security Guards Hiring System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-3137 is classified as a critical vulnerability due to its potential for SQL injection exploitation.
To fix CVE-2025-3137, sanitize and validate the input parameters in the /admin/changeimage.php file to prevent SQL injection.
CVE-2025-3137 affects the PHPGurukul Online Security Guards Hiring System version 1.0.
CVE-2025-3137 allows attackers to execute SQL injection attacks through the editid argument.
No specific patch is available for CVE-2025-3137, but application of input validation techniques can mitigate the risk.