CVE-2025-7559: PHPGurukul Online Fire Reporting System bwdates-report-result.php sql injection
A vulnerability was found in PHPGurukul Online Fire Reporting System 1.2. It has been classified as critical. This affects an unknown part of the file /admin/bwdates-report-result.php. The manipulation of the argument fromdate/todate leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7559?
CVE-2025-7559 is classified as a critical vulnerability.
How does CVE-2025-7559 affect the PHPGurukul Online Fire Reporting System?
CVE-2025-7559 allows for SQL injection through manipulation of the fromdate and todate parameters.
What part of the software is affected by CVE-2025-7559?
CVE-2025-7559 affects the /admin/bwdates-report-result.php file in the PHPGurukul Online Fire Reporting System.
How do I fix CVE-2025-7559?
To fix CVE-2025-7559, validate and sanitize user inputs in the affected parameters to prevent SQL injection.
What is the potential impact of exploiting CVE-2025-7559?
Exploiting CVE-2025-7559 can lead to unauthorized access to the database and manipulation of sensitive data.