CVE-2025-4249: PHPGurukul e-Diary Management System manage-categories.php sql injection
A vulnerability was found in PHPGurukul e-Diary Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /manage-categories.php. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4249?
CVE-2025-4249 is classified as a critical vulnerability.
How does CVE-2025-4249 impact PHPGurukul e-Diary Management System?
CVE-2025-4249 allows for SQL injection via manipulation of the ID argument in the file /manage-categories.php.
Can CVE-2025-4249 be exploited remotely?
Yes, the vulnerability CVE-2025-4249 can be exploited remotely.
What versions of PHPGurukul e-Diary Management System are affected by CVE-2025-4249?
CVE-2025-4249 affects PHPGurukul e-Diary Management System version 1.0.
How can I mitigate the risks associated with CVE-2025-4249?
To mitigate CVE-2025-4249, it is recommended to apply security patches provided by the vendor or to sanitize input to prevent SQL injection.