CVE-2025-4110
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Apr 30, 2025
Updated: May 13, 2025
CWE ID 74
CWE ID 89
Summary
CVE-2025-4110 is a critical vulnerability affecting the PHPGurukul Pre-School Enrollment System version 1.0. This issue lies in an unknown functionality of the file /admin/edit-teacher.php, which allows for sql injection through the manipulation of the argument mobilenumber. The exploit can be launched remotely, and there's a risk that other parameters may also be susceptible to this vulnerability. The public disclosure of the exploit increases the threat level, making it imperative for users to apply the necessary patches or updates as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.