CVE-2025-4297: PHPGurukul Men Salon Management System change-password.php sql injection
A vulnerability was found in PHPGurukul Men Salon Management System 2.0. It has been classified as critical. This affects an unknown part of the file /admin/change-password.php. The manipulation leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Multiple parameters might be affected.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4297?
CVE-2025-4297 has been classified as critical due to its potential for remote SQL injection.
How do I fix CVE-2025-4297?
To fix CVE-2025-4297, it is recommended to validate and sanitize all user inputs that interact with the database.
What does CVE-2025-4297 affect?
CVE-2025-4297 affects the file /admin/change-password.php in PHPGurukul Men Salon Management System 2.0.
Can CVE-2025-4297 be exploited remotely?
Yes, CVE-2025-4297 can be exploited remotely, allowing attackers to execute SQL injection attacks.
What are the implications of CVE-2025-4297?
The implications of CVE-2025-4297 include unauthorized access to sensitive data and potential compromise of the application.