CNNVD-202601-2552 Information

CNNVD ID

CNNVD-202601-2552

CVE-2025-70892

  • CNNVD Published: 2026-01-15

Description (Chinese)

PHPGurukul Cyber Cafe Management System是PHPGurukul公司的一个网吧管理系统。 Phpgurukul Cyber Cafe Management System v1.0版本存在安全漏洞,该漏洞源于add-users.php端点的username参数未对用户输入进行充分验证,可能导致SQL注入攻击。

Description (English)

PHPGurukul Cyber Cafe Management Systems is a cybercafe management system of PHPGurukul. There is a security loophole in version Phpgurukul Cyber Cafe Management System v1.0, which originates from the username parameter at the add-users.php endpoint, which does not adequately verify user input and may lead to an SQL injection attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

PHPGurukul

Published

2026-01-15

Last Modified

2026-02-24

References

https://github.com/efekaanakkar/Cyber-Cafe-Management-System-CVEs/tree/main/CVE-2025-70892 https://phpgurukul.com/cyber-cafe-management-system-using-php-mysql/ https://access.redhat.com/security/cve/cve-2025-70892

Share on: