First published: Thu Apr 03 2025(Updated: )
A vulnerability, which was classified as critical, was found in PHPGurukul Bus Pass Management System 1.0. This affects an unknown part of the file /view-pass-detail.php. The manipulation of the argument viewid leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
PHPGurukul Bus Pass Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-3146 is classified as a critical vulnerability.
To fix CVE-2025-3146, update the PHPGurukul Bus Pass Management System to the latest version that addresses this SQL injection vulnerability.
CVE-2025-3146 is an SQL injection vulnerability affecting the Bus Pass Management System.
CVE-2025-3146 can be exploited remotely by manipulating the 'viewid' argument in the /view-pass-detail.php file.
CVE-2025-3146 affects the PHPGurukul Bus Pass Management System version 1.0.