CVE-2025-6125: PHPGurukul Rail Pass Management System aboutus.php cross site scripting
A vulnerability was found in PHPGurukul Rail Pass Management System 1.0. It has been classified as problematic. Affected is an unknown function of the file /admin/aboutus.php. The manipulation of the argument pagedes leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6125?
CVE-2025-6125 has been classified as problematic due to the potential for cross-site scripting attacks.
How do I fix CVE-2025-6125?
To fix CVE-2025-6125, sanitize and validate the input parameters in the affected function to prevent cross-site scripting.
Which versions are affected by CVE-2025-6125?
CVE-2025-6125 affects version 1.0 of the PHPGurukul Rail Pass Management System.
What type of vulnerability is CVE-2025-6125?
CVE-2025-6125 is a cross-site scripting (XSS) vulnerability.
Where is the vulnerability CVE-2025-6125 located?
CVE-2025-6125 is located in the file /admin/aboutus.php of the PHPGurukul Rail Pass Management System.