PHPGurukul/Campcodes Cyber Cafe Management System forgot-password.php sql injection

CVE Details

Basic Information

Title PHPGurukul/Campcodes Cyber Cafe Management System forgot-password.php sql injection
Type cve
Published 2025-07-08T06:02:05.515Z
Modified 2025-07-08T06:02:05.515Z

Product Information

Vendor PHPGurukul
Product Cyber Cafe Management System
Version 1.0

CVSS Information

Base Score 6.9 (MEDIUM)
Attack Vector CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P

AI Analysis

AI Description A SQL injection vulnerability in the forgot-password.php file of PHPGurukul’s Cyber Cafe Management System version 1.0 allows remote attackers to exploit the email argument, potentially leading to unauthorized database access.
AI Severity Medium
AI Vendor PHPGurukul
AI Product Cyber Cafe Management System
AI Version 1.0

Affected Products

  • PHPGurukul Cyber Cafe Management System 1.0
  • Campcodes Cyber Cafe Management System 1.0

Additional Information

CWE List CWE-89, CWE-74
Source VulDB

Description

A vulnerability was found in PHPGurukul/Campcodes Cyber Cafe Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /forgot-password.php. The manipulation of the argument email leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.