CVE-2025-9307: PHPGurukul Online Course Registration session.php sql injection
A flaw has been found in PHPGurukul Online Course Registration 3.1. This affects an unknown function of the file /admin/session.php. This manipulation of the argument sesssion causes sql injection. The attack can be initiated remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9307?
CVE-2025-9307 is classified as a high severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2025-9307?
To fix CVE-2025-9307, update PHPGurukul Online Course Registration to the latest version that addresses this vulnerability.
What type of vulnerability is CVE-2025-9307?
CVE-2025-9307 is an SQL injection vulnerability that occurs in the session management function of the software.
Can CVE-2025-9307 be exploited remotely?
Yes, CVE-2025-9307 can be exploited remotely, allowing attackers to initiate attacks from any location.
Which file is affected by CVE-2025-9307?
CVE-2025-9307 affects the file /admin/session.php in PHPGurukul Online Course Registration.