CVE Details
Basic Information
| Title | CVE-2025-4906 PHPGurukul Notice Board System login.php sql injection |
|---|---|
| Type | cve |
| Published | 2025-05-19T02:00:19 |
| Last Seen | 2025-05-19T02:52:04 |
CVSS Information
| Base Score | 0.0 () |
|---|---|
| Attack Vector | |
| Attack Complexity | |
| Privileges Required | |
| User Interaction | |
| Scope | |
| Confidentiality Impact | |
| Integrity Impact | |
| Availability Impact |
AI Analysis
| AI Description | A critical vulnerability in PHPGurukul Notice Board System 1.0 allows SQL injection via the Username parameter in login.php. This could allow attackers to execute arbitrary SQL commands and potentially gain unauthorized access to the system. |
|---|---|
| AI Severity | High |
| Vendor | PHPGurukul |
| Product | Notice Board System |
| Affected Version | 1.0 |
Additional Information
| CVE List | CVE-2025-4906 |
|---|---|
| CWE List | CWE-89, CWE-74 |
| Bulletin Family | cve |
Description
A vulnerability was found in PHPGurukul Notice Board System 1.0. It has been classified as critical. Affected is an unknown function of the file /login.php. The manipulation of the argument Username leads to sql injection….
CVSS Score Summary
Base Score: %!f(string=#) ()