CVE-2025-5230: PHPGurukul Online Nurse Hiring System bwdates-report-details.php sql injection
A vulnerability classified as critical has been found in PHPGurukul Online Nurse Hiring System 1.0. This affects an unknown part of the file /admin/bwdates-report-details.php. The manipulation of the argument fromdate/todate leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-5230?
CVE-2025-5230 is classified as a critical vulnerability.
How does CVE-2025-5230 affect the PHPGurukul Online Nurse Hiring System?
CVE-2025-5230 affects the file /admin/bwdates-report-details.php, leading to SQL injection through the manipulation of fromdate/todate parameters.
How can I fix CVE-2025-5230 in my application?
To fix CVE-2025-5230, validate and sanitize user inputs for the fromdate and todate parameters to prevent SQL injection.
Is CVE-2025-5230 being actively exploited?
While there is no reported evidence of active exploitation of CVE-2025-5230, it is crucial to patch the vulnerability as soon as possible.
What versions of PHPGurukul Online Nurse Hiring System are affected by CVE-2025-5230?
CVE-2025-5230 affects version 1.0 of the PHPGurukul Online Nurse Hiring System.