CVE-2025-3220: PHPGurukul e-Diary Management System dashboard.php sql injection
A vulnerability was found in PHPGurukul e-Diary Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /dashboard.php. The manipulation of the argument Category leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3220?
CVE-2025-3220 has been classified as a critical vulnerability.
What type of vulnerability is CVE-2025-3220?
CVE-2025-3220 is an SQL injection vulnerability identified in the PHPGurukul e-Diary Management System.
How can I exploit CVE-2025-3220?
CVE-2025-3220 can be exploited by manipulating the 'Category' argument in the /dashboard.php file.
How do I fix CVE-2025-3220?
To fix CVE-2025-3220, ensure proper input validation and use prepared statements to handle database queries.
Which software is affected by CVE-2025-3220?
CVE-2025-3220 affects PHPGurukul e-Diary Management System version 1.0.