CVE-2025-7161: PHPGurukul Zoo Management System add-normal-ticket.php sql injection
A vulnerability classified as critical was found in PHPGurukul Zoo Management System 2.1. This vulnerability affects unknown code of the file /admin/add-normal-ticket.php. The manipulation of the argument cprice leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7161?
CVE-2025-7161 is classified as a critical vulnerability.
How do I fix CVE-2025-7161?
To fix CVE-2025-7161, sanitize and validate user inputs to prevent SQL injection on the /admin/add-normal-ticket.php file.
What type of vulnerability is CVE-2025-7161?
CVE-2025-7161 is a SQL injection vulnerability affecting the PHPGurukul Zoo Management System.
Is CVE-2025-7161 exploitable remotely?
Yes, CVE-2025-7161 can be exploited remotely by manipulating the cprice argument.
Which component of PHPGurukul Zoo Management System is affected by CVE-2025-7161?
CVE-2025-7161 affects the /admin/add-normal-ticket.php file of PHPGurukul Zoo Management System.