SQL Injection Vulnerability in PHPGurukul Human Metapneumovirus Testing Management System
CVE-2025-2373
8.8HIGH
What is CVE-2025-2373?
A vulnerability exists in the PHPGurukul Human Metapneumovirus Testing Management System that allows attackers to exploit the '/check_availability.php' file through crafted input parameters such as 'mobnumber' or 'employeeid'. This SQL injection vulnerability facilitates unauthorized access to the database, potentially compromising sensitive information. Given that the attack can be executed remotely, it poses a significant risk to organizations utilizing this system. Immediate attention and mitigation strategies are recommended to safeguard data integrity.