CVE-2025-5249: PHPGurukul News Portal Project add-category.php sql injection
A vulnerability has been found in PHPGurukul News Portal Project 4.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/add-category.php. The manipulation of the argument Category leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-5249?
CVE-2025-5249 is classified as a critical vulnerability.
What type of vulnerability is CVE-2025-5249?
CVE-2025-5249 is a SQL injection vulnerability affecting the /admin/add-category.php file.
How do I fix CVE-2025-5249?
To fix CVE-2025-5249, validate and sanitize the Category input to prevent SQL injection attacks.
Which software is affected by CVE-2025-5249?
CVE-2025-5249 affects the PHPGurukul News Portal Project version 4.1.
Can CVE-2025-5249 be exploited remotely?
Yes, CVE-2025-5249 can be exploited remotely if the vulnerable functionality is accessible online.