CVE-2025-4266: PHPGurukul Notice Board System bwdates-reports-details.php sql injection
A vulnerability, which was classified as critical, has been found in PHPGurukul Notice Board System 1.0. Affected by this issue is some unknown functionality of the file /bwdates-reports-details.php?vid=2. The manipulation of the argument fromdate/tomdate leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4266?
CVE-2025-4266 is classified as a critical vulnerability.
What type of vulnerability is CVE-2025-4266?
CVE-2025-4266 is an SQL injection vulnerability found in the PHPGurukul Notice Board System.
Which component is affected by CVE-2025-4266?
CVE-2025-4266 affects the file /bwdates-reports-details.php?vid=2 in the PHPGurukul Notice Board System.
How do I fix CVE-2025-4266?
To fix CVE-2025-4266, ensure input validation and parameterized queries are implemented in the affected PHP files.
What could be the impact of exploiting CVE-2025-4266?
Exploiting CVE-2025-4266 could allow an attacker to execute arbitrary SQL commands in the database.