CVE-2025-4911: PHPGurukul Zoo Management System view-foreigner-ticket.php sql injection
Published May 19, 2025
·Updated
A vulnerability, which was classified as critical, was found in PHPGurukul Zoo Management System 2.1. Affected is an unknown function of the file /admin/view-foreigner-ticket.php. The manipulation of the argument viewid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Phpgurukul Zoo Management System
Phpgurukul Zoo Management System=2.1
Event History
May 19, 2025
CVE Published
via MITRE·04:31 AM
Data Sourced
via MITRE·04:31 AM
DescriptionSeverityWeakness
Sep 1, 57367
Event
via FIRST·10:30 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-4911?
CVE-2025-4911 is classified as a critical vulnerability.
2
What type of vulnerability is CVE-2025-4911?
CVE-2025-4911 is a SQL injection vulnerability found in PHPGurukul Zoo Management System.
3
How do I fix CVE-2025-4911?
To fix CVE-2025-4911, sanitize and validate all user inputs to prevent SQL injection.
4
Which file is affected by CVE-2025-4911?
CVE-2025-4911 affects the file /admin/view-foreigner-ticket.php.
5
What versions of PHPGurukul Zoo Management System are affected by CVE-2025-4911?
CVE-2025-4911 affects PHPGurukul Zoo Management System version 2.1.