SQL Injection Vulnerability in phpgurukul Hospital Management System
CVE-2025-56212
9.8CRITICAL
What is CVE-2025-56212?
The phpgurukul Hospital Management System version 4.0 is prone to an SQL injection vulnerability that can be exploited through the 'docname' parameter in the add-doctor.php file. This flaw may allow attackers to execute arbitrary SQL queries, potentially leading to unauthorized access to sensitive information within the database.