CVE-2025-6322: PHPGurukul Pre-School Enrollment System visit.php sql injection
Published Jun 20, 2025
·Updated
A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /visit.php. The manipulation of the argument gname leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Phpgurukul Pre-School Enrollment System
Phpgurukul Pre-School Enrollment System=1.0
Event History
Jun 20, 2025
CVE Published
via MITRE·09:00 AM
Data Sourced
via MITRE·09:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeaknessAffected Software
Jun 11, 58473
Event
via NVD·10:01 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-6322?
CVE-2025-6322 is classified as a critical vulnerability.
2
How does CVE-2025-6322 affect the PHPGurukul Pre-School Enrollment System?
CVE-2025-6322 affects the /visit.php file through SQL injection via the 'gname' argument.
3
Can CVE-2025-6322 be exploited remotely?
Yes, CVE-2025-6322 can be exploited remotely.
4
What is the impact of exploiting CVE-2025-6322?
Exploiting CVE-2025-6322 can lead to unauthorized access to the database.
5
How do I fix CVE-2025-6322?
To fix CVE-2025-6322, sanitize all inputs to the SQL database in the affected functionality.