CVE-2025-4862: PHPGurukul Directory Management System searchdata.php cross site scripting
A vulnerability, which was classified as problematic, has been found in PHPGurukul Directory Management System 2.0. Affected by this issue is some unknown functionality of the file /searchdata.php. The manipulation of the argument searchdata leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4862?
CVE-2025-4862 is classified as a problematic vulnerability affecting the PHPGurukul Directory Management System.
What type of vulnerability is CVE-2025-4862?
CVE-2025-4862 is a cross-site scripting (XSS) vulnerability that can be exploited through the /searchdata.php file.
How do I fix CVE-2025-4862?
To mitigate CVE-2025-4862, ensure proper input validation and sanitization of user inputs in the /searchdata.php file.
Which software versions are affected by CVE-2025-4862?
CVE-2025-4862 affects PHPGurukul Directory Management System 2.0.
What can happen if CVE-2025-4862 is exploited?
Exploitation of CVE-2025-4862 could allow attackers to execute malicious scripts in the user's browser, potentially leading to data theft or session hijacking.