CVE-2025-4030
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Apr 28, 2025
Updated: May 10, 2025
CWE ID 74
CWE ID 89
Summary
CVE-2025-4030 is a critical vulnerability affecting the PHPGurukul COVID19 Testing Management System version 1.0. The issue lies within the /search-report-result.php file, where an argument named searchdata is susceptible to SQL injection. An attacker can remotely exploit this vulnerability by manipulating the searchdata parameter, potentially gaining unauthorized access to sensitive data. The exploit for this flaw has been made public, increasing the risk of widespread exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.