CVE-2025-8951: PHPGurukul Teachers Record Management System search.php sql injection
A vulnerability has been found in PHPGurukul Teachers Record Management System 2.1. Affected is an unknown function of the file /admin/search.php. The manipulation of the argument searchdata leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8951?
CVE-2025-8951 is rated as a high severity vulnerability due to its potential for SQL injection exploitation.
How do I fix CVE-2025-8951?
To fix CVE-2025-8951, validate and sanitize user inputs within the affected search functionality and update to the latest version of PHPGurukul Teachers Record Management System.
What systems are affected by CVE-2025-8951?
CVE-2025-8951 affects the PHPGurukul Teachers Record Management System version 2.1.
What type of vulnerability is CVE-2025-8951?
CVE-2025-8951 is classified as an SQL injection vulnerability.
Can CVE-2025-8951 be exploited remotely?
Yes, CVE-2025-8951 can be exploited remotely.