CVE-2025-4030

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Apr 28, 2025
Updated: May 10, 2025
CWE ID 74
CWE ID 89

Summary

CVE-2025-4030 is a critical vulnerability affecting the PHPGurukul COVID19 Testing Management System version 1.0. The issue lies within the /search-report-result.php file, where an argument named searchdata is susceptible to SQL injection. An attacker can remotely exploit this vulnerability by manipulating the searchdata parameter, potentially gaining unauthorized access to sensitive data. The exploit for this flaw has been made public, increasing the risk of widespread exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share