Vulnerability Details
Basic Information
| Title | CVE-2025-4264 PHPGurukul Emergency Ambulance Hiring Portal edit-ambulance.php sql injection |
|---|---|
| Type | cvelist |
| Published | 2025-05-05T04:31:05 |
| Last Seen | 2025-05-05T05:10:53 |
| CVSS Score | 7.3 (HIGH) |
CVSS v3 Details
| Attack Vector | NETWORK |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | NONE |
| User Interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality Impact | LOW |
| Integrity Impact | LOW |
| Availability Impact | LOW |
CVE Information
| CVE IDs | CVE-2025-4264 |
|---|---|
| CWE | CWE-89, CWE-74 |
| Bulletin Family | cve |
Description
A vulnerability classified as critical has been found in PHPGurukul Emergency Ambulance Hiring Portal 1.0. Affected is an unknown function of the file /admin/edit-ambulance.php. The manipulation of the argument dconnum leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Impact Assessment
| Base Score | 7.3 |
|---|---|
| Severity | HIGH |