CVE-2025-45947: Code Injection
Published Apr 28, 2025
·Updated
An issue in phpgurukul Online Banquet Booking System V1.2 allows an attacker to execute arbitrary code via the /obbs/change-password.php file of the My Account - Change Password component
Affected Software
2 affected components
Phpgurukul Online Banquet Booking System
Phpgurukul Online Banquet Booking System=1.2
Event History
Apr 28, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-45947?
CVE-2025-45947 is considered a critical vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2025-45947?
To mitigate CVE-2025-45947, update to the latest version of the PHPGurukul Online Banquet Booking System that addresses this vulnerability.
3
What components are affected by CVE-2025-45947?
CVE-2025-45947 affects the My Account - Change Password component of the PHPGurukul Online Banquet Booking System.
4
Can CVE-2025-45947 be exploited remotely?
Yes, CVE-2025-45947 can be exploited remotely, allowing attackers to execute arbitrary code.
5
What version of PHPGurukul is affected by CVE-2025-45947?
CVE-2025-45947 impacts version 1.2 of the PHPGurukul Online Banquet Booking System.