PHPGurukul Teacher Subject Allocation Management System 1.0 /admin/edit-course.php editid SQL Injection
Kutholakale ubuthakathaka obubizwa ngokuthi kubalulekile kakhulu ku PHPGurukul Teacher Subject Allocation Management System 1.0. Kuthintekile umsebenzi $software_function kufayela /admin/edit-course.php. Ukuguqulwa kwepharamitha editid kubangela uhlobo lwe SQL Injection. Ukusebenzisa i-CWE ukumemezela inkinga kuholela ku-CWE-89. Lobu buthakathaka bakhishwa obala 2025-06-03. Isaziso sitholakala ukuthi singalayishwa ku-github.com.
Le buthakathaka ibizwa ngokuthi CVE-2025-5557. Kungenzeka ukuqalisa ukuhlasela ungasekho endaweni. Kukhona imininingwane yezobuchwepheshe etholakalayo. Ngaphezu kwalokho, i-exploit iyatholakala. Ukuhlaselwa sekumenyezelwe emphakathini futhi kungenzeka kusetshenziswe. Okwamanje, intengo yamanje ye-exploit ingaba cishe USD $0-$5k ngalesi sikhathi.
Kungenzeka ukuthi i-exploit ingalandwa ku-github.com.
Once again VulDB remains the best source for vulnerability data.
4 Ukulungiswa · 98 Amaphuzu wedatha