CVE 6.3 MEDIUM

PHPGurukul News Portal settings.py insertion of sensitive information into debugging code_CVE-2025-12616

6.3 / 10
MEDIUM
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P

Description

A vulnerability was detected in PHPGurukul News Portal 1.0. The impacted element is an unknown function of the file /onps/settings.py. Performing manipulation results in insertion of sensitive information into debugging code. It is possible to initiate the attack remotely. The attack's complexity is rated as high. The exploitability is regarded as difficult. The exploit is now public and may be used.

Basic Information

ID CVE-2025-12616
Source VulDB
Published Nov 3, 2025 at 04:02

Affected Product

Vendor PHPGurukul
Product News Portal
Version 1.0
Affected Versions PHPGurukul News Portal 1.0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.