SQL Injection Vulnerability in PHPGurukul Online Fire Reporting System
CVE-2025-5618
5.3MEDIUM
What is CVE-2025-5618?
A vulnerability in the PHPGurukul Online Fire Reporting System 1.2 allows remote attackers to exploit an SQL injection via manipulated teamid parameters in the /admin/edit-team.php file. This flaw could potentially compromise data integrity and security, making it essential for users and administrators to apply necessary patches and secure their systems promptly.
Affected Version(s)
Online Fire Reporting System 1.2
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.