CVE-2025-4914: PHPGurukul Auto Taxi Stand Management System forgot-password.php sql injection
A vulnerability was found in PHPGurukul Auto Taxi Stand Management System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/forgot-password.php. The manipulation of the argument email leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4914?
CVE-2025-4914 is classified as a critical severity vulnerability.
How can I fix CVE-2025-4914?
To fix CVE-2025-4914, ensure proper input validation and use prepared statements to prevent SQL injection.
What component of the software is affected by CVE-2025-4914?
CVE-2025-4914 affects the /admin/forgot-password.php file within the PHPGurukul Auto Taxi Stand Management System.
What type of vulnerability is CVE-2025-4914?
CVE-2025-4914 is a SQL injection vulnerability caused by improper handling of the email argument.
Can CVE-2025-4914 be exploited remotely?
Yes, CVE-2025-4914 can be exploited remotely, allowing attackers to manipulate the database.