SQL Injection Vulnerability in PHPGurukul Nipah Virus Testing Management System
CVE-2025-5858
5.3MEDIUM
What is CVE-2025-5858?
A vulnerability exists in the PHPGurukul Nipah Virus Testing Management System 1.0 within the /patient-report.php file. This vulnerability allows attackers to manipulate the 'searchdata' argument, which can lead to SQL Injection. Exploitation of this vulnerability can be performed remotely, and details about the exploit have been made public, raising concerns for users of the affected product.
Affected Version(s)
Nipah Virus Testing Management System 1.0
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.