CVE-2025-5838: PHPGurukul Employee Record Management System adminprofile.php sql injection
A vulnerability classified as critical was found in PHPGurukul Employee Record Management System 1.3. Affected by this vulnerability is an unknown functionality of the file /admin/adminprofile.php. The manipulation of the argument AdminName leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-5838?
CVE-2025-5838 is classified as a critical vulnerability.
How does CVE-2025-5838 affect PHPGurukul Employee Record Management System?
CVE-2025-5838 affects the AdminName argument in /admin/adminprofile.php, leading to SQL injection vulnerabilities.
How do I fix CVE-2025-5838?
To fix CVE-2025-5838, it is recommended to validate and sanitize user inputs to prevent SQL injection.
What is SQL injection in the context of CVE-2025-5838?
SQL injection in CVE-2025-5838 refers to the exploitation of the vulnerability to manipulate database queries.
Which version of PHPGurukul Employee Record Management System is affected by CVE-2025-5838?
CVE-2025-5838 affects PHPGurukul Employee Record Management System version 1.3.