CVE-2025-7522: PHPGurukul Vehicle Parking Management System bwdates-reports-details.php sql injection
A vulnerability has been found in PHPGurukul Vehicle Parking Management System 1.13 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/bwdates-reports-details.php. The manipulation of the argument fromdate/todate leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7522?
CVE-2025-7522 is classified as a critical vulnerability in PHPGurukul Vehicle Parking Management System 1.13.
What type of vulnerability is CVE-2025-7522?
CVE-2025-7522 is a SQL injection vulnerability affecting the functionality of the file /admin/bwdates-reports-details.php.
How do I fix CVE-2025-7522?
To mitigate CVE-2025-7522, sanitize and validate the user inputs for fromdate and todate parameters to prevent SQL injection.
Which versions of PHPGurukul Vehicle Parking Management System are affected by CVE-2025-7522?
CVE-2025-7522 affects PHPGurukul Vehicle Parking Management System version 1.13.
What are the consequences of exploiting CVE-2025-7522?
Exploiting CVE-2025-7522 could allow an attacker to execute arbitrary SQL queries on the database, leading to data leakage or corruption.