CVE-2025-7177: PHPGurukul Car Washing Management System editcar-washpoint.php sql injection
A vulnerability was found in PHPGurukul Car Washing Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/editcar-washpoint.php. The manipulation of the argument wpid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7177?
CVE-2025-7177 is rated as critical due to its ability to allow SQL injection attacks.
What affected software has CVE-2025-7177?
CVE-2025-7177 affects the PHPGurukul Car Washing Management System version 1.0.
How does CVE-2025-7177 manifest?
CVE-2025-7177 manifests through SQL injection vulnerabilities caused by manipulation of the wpid argument in the file /admin/editcar-washpoint.php.
How do I fix CVE-2025-7177?
To fix CVE-2025-7177, input validation and parameterized queries should be implemented to secure the wpid argument against SQL injection.
Can CVE-2025-7177 be exploited remotely?
Yes, CVE-2025-7177 can potentially be exploited remotely if the attacker has access to the vulnerable functionality.