CVE-2025-6910: PHPGurukul Student Record System session.php sql injection
A vulnerability was found in PHPGurukul Student Record System 3.2. It has been classified as critical. This affects an unknown part of the file /session.php. The manipulation of the argument session leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6910?
CVE-2025-6910 is classified as a critical vulnerability.
How does CVE-2025-6910 affect the PHPGurukul Student Record System?
CVE-2025-6910 allows for SQL injection through the manipulation of the session argument in /session.php.
Can CVE-2025-6910 be exploited remotely?
Yes, CVE-2025-6910 can be exploited remotely.
What is the impact of exploiting CVE-2025-6910?
Exploiting CVE-2025-6910 could allow attackers to execute arbitrary SQL queries against the database.
How can users protect themselves from CVE-2025-6910?
To protect against CVE-2025-6910, users should update their PHPGurukul Student Record System to the latest version and implement input validation.