SQL Injection Vulnerability in PHPGurukul Art Gallery Management System
CVE-2025-2646
What is CVE-2025-2646?
The PHPGurukul Art Gallery Management System version 1.0 contains a vulnerability within the admin profile management functionality. An SQL injection vulnerability exists due to improper validation of the 'contactnumber' parameter in the /admin/admin-profile.php file. This flaw enables attackers to manipulate SQL queries sent to the database, potentially leading to unauthorized data exposure or manipulation. The vulnerability is exploitable remotely and could affect additional parameters as well. Given its public disclosure, it poses a significant risk to users and requires immediate attention.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Art Gallery Management System 1.0
References
CVSS V4
Timeline
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
