CVE-2025-6155: PHPGurukul Hostel Management System login-hm.inc.php sql injection
Published Jun 17, 2025
·Updated
A vulnerability was found in PHPGurukul Hostel Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /includes/login-hm.inc.php. The manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Phpgurukul Hostel Management System
Phpgurukul Hostel Management System=1.0
Event History
Jun 17, 2025
CVE Published
via MITRE·02:31 AM
Data Sourced
via MITRE·02:31 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-6155?
CVE-2025-6155 has been classified as a critical vulnerability.
2
How do I fix CVE-2025-6155?
To fix CVE-2025-6155, ensure that user inputs are properly sanitized to prevent SQL injection.
3
What software is affected by CVE-2025-6155?
CVE-2025-6155 affects PHPGurukul Hostel Management System version 1.0.
4
What type of vulnerability is CVE-2025-6155?
CVE-2025-6155 is a SQL injection vulnerability.
5
Where is the vulnerable code located in CVE-2025-6155?
The vulnerable code is located in the file /includes/login-hm.inc.php.