CVE-2025-5599: PHPGurukul Student Result Management System editmyexp.php sql injection
Published Jun 4, 2025
·Updated
A vulnerability classified as critical was found in PHPGurukul Student Result Management System 1.3. This vulnerability affects unknown code of the file /editmyexp.php. The manipulation of the argument emp1ctc leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
PHPGurukul Student Result Management System
PHPGurukul Student Result Management System=1.3
Event History
Jun 4, 2025
CVE Published
via MITRE·05:31 PM
Data Sourced
via MITRE·05:31 PM
DescriptionSeverityWeakness
Aug 30, 57482
Event
via FIRST·02:03 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-5599?
CVE-2025-5599 is classified as a critical vulnerability.
2
How does CVE-2025-5599 affect the PHPGurukul Student Result Management System?
CVE-2025-5599 affects the /editmyexp.php file allowing for SQL injection through the emp1ctc parameter.
3
Can CVE-2025-5599 be exploited remotely?
Yes, CVE-2025-5599 can be exploited remotely.
4
What should I do to fix CVE-2025-5599?
To fix CVE-2025-5599, you should validate and sanitize user inputs in the affected SQL queries.
5
Which version of the software is affected by CVE-2025-5599?
CVE-2025-5599 affects PHPGurukul Student Result Management System version 1.3.