SQL Injection Vulnerability in PHPGurukul Online Nurse Hiring System 1.0
CVE-2025-1583
5.3MEDIUM
What is CVE-2025-1583?
The PHPGurukul Online Nurse Hiring System 1.0 is susceptible to SQL injection due to improper handling of user input in the /admin/search-report-details.php file. By manipulating the 'searchinput' argument, an attacker can execute arbitrary SQL commands against the database, potentially compromising sensitive data. This vulnerability can be exploited remotely, making it a significant risk for installations of this system. Users are urged to take immediate precautions to mitigate the threat.
Affected Version(s)
Online Nurse Hiring System 1.0
References
CVSS V4
Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved
Credit
0x0A1lha (VulDB User)