Security Advisory

CVE-2025-1902

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-04 04:00:07
Last updated 2025-03-04 15:20:02
Assigner VulDB
State PUBLISHED

Description

A vulnerability was found in PHPGurukul Student Record System 3.2. It has been declared as critical. This vulnerability affects unknown code of the file /password-recovery.php. The manipulation of the argument emailid leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.