CVE-2025-3973

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Apr 27, 2025
Updated: May 7, 2025
CWE ID 125

Summary

CVE-2025-3973 is a critical vulnerability identified in the PHPGurukul COVID19 Testing Management System 1.0. This issue lies in an unspecified part of the /check_availability.php file, which can be exploited through a manipulated mobnumber argument. attackers can execute SQL injection, allowing them to gain unauthorized access to the system. This remote attack is publicly disclosed, increasing the risk for potential exploitation. Additional parameters may also be affected.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share