CVE-2025-28072
CVSS 3.1 Score 7.5 of 10 (high)
Details
Summary
CVE-2025-28072: A directory traversal vulnerability has been identified in the manage-teachers.php file of the PHPGurukul Pre-School Enrollment System. An attacker can exploit this vulnerability by manipulating the input to traverse and access sensitive directories, potentially leading to unauthorized access and data exposure. The impact of this issue can range from information disclosure to system compromise if an attacker gains access to critical files or configurations. Users are strongly advised to update the affected system to a patch released by the vendor or implement appropriate access controls to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.