CVE-2025-7585: PHPGurukul Online Fire Reporting System manage-site.php sql injection
A vulnerability was found in PHPGurukul Online Fire Reporting System 1.2. It has been classified as critical. Affected is an unknown function of the file /admin/manage-site.php. The manipulation of the argument webtitle leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7585?
CVE-2025-7585 is classified as critical due to its potential for SQL injection vulnerabilities.
What is affected by CVE-2025-7585?
CVE-2025-7585 affects the PHPGurukul Online Fire Reporting System version 1.2.
How do I fix CVE-2025-7585?
To fix CVE-2025-7585, validate and sanitize user input in the 'webtitle' argument to prevent SQL injection.
How can CVE-2025-7585 be exploited?
CVE-2025-7585 can be exploited by manipulating the 'webtitle' argument in requests to the '/admin/manage-site.php' file.
What are the potential impacts of CVE-2025-7585?
The potential impacts of CVE-2025-7585 include unauthorized database access, data corruption, and complete system compromise.