CNNVD-202601-2546 Information

CNNVD ID

CNNVD-202601-2546

CVE-2025-70893

  • CNNVD Published: 2026-01-15

Description (Chinese)

PHPGurukul Cyber Cafe Management System是PHPGurukul公司的一个网吧管理系统。 PHPGurukul Cyber Cafe Management System v1.0版本存在安全漏洞,该漏洞源于adminprofile.php端点的adminname参数未对用户输入进行充分清理,可能导致基于时间的盲SQL注入攻击。

Description (English)

PHPGurukul Cyber Cafe Management Systems is a cybercafe management system of PHPGurukul. PHPGurukul Cyber Café Management System v1.0 has a security loophole, which originates from the dminprofile.php endpoint ’ s dminname parameter that does not adequately clean up user input and may result in a time-based, blind SQL injection attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

PHPGurukul

Published

2026-01-15

Last Modified

2026-02-24

References

https://github.com/efekaanakkar/Cyber-Cafe-Management-System-CVEs/tree/main/CVE-2025-70893 https://phpgurukul.com/cyber-cafe-management-system-using-php-mysql/ https://access.redhat.com/security/cve/cve-2025-70893

Share on: