CNNVD-202506-2641 Information

CNNVD ID

CNNVD-202506-2641

CVE-2025-6321

  • CNNVD Published: 2025-06-20

Description (Chinese)

PHPGurukul Pre-School Enrollment System是PHPGurukul公司的一个基于 Web 的学前招生系统。 PHPGurukul Pre-School Enrollment System 1.0版本存在注入漏洞,该漏洞源于文件/admin/add-subadmin.php中参数sadminusername处理不当导致SQL注入,可能导致远程攻击。

Description (English)

PHPGurukul Pre-School Enrollment System is a Web-based pre-school enrolment system for PHPGurukul. PHPGurukul Pre-School Environment System Version 1.0 has an injection loophole, which originates from the sadminusername in the document/admin/addd-subadmin.php when the parameter sadminusername was mistreated and led to the injection of SQL, which could lead to a long-range attack.

Hazard Level

High

Vulnerability Type

注入

Affected Vendor

PHPGurukul

Published

2025-06-20

Last Modified

2026-02-24

References

https://github.com/f1rstb100d/myCVE/issues/74 https://vuldb.com/?submit.596380 https://vuldb.com/?ctiid.313321 https://phpgurukul.com/ https://vuldb.com/?id.313321 https://access.redhat.com/security/cve/cve-2025-6321

Share on: