CVE-2025-28011 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A SQL Injection was found in loginsystem/change-password.php in PHPGurukul User Registration & Login and User Management System v3.3 allows remote attackers to…
Medium CVSS: 6.1

CVE-2025-28011

A SQL Injection was found in loginsystem/change-password.php in PHPGurukul User Registration & Login and User Management System v3.3 allows remote attackers to execute arbitrary code via the currentpassword POST request parameter.
Vendor
Phpgurukul
Product
User Registration \& Login And User Management System
CWE
CWE-89
Yayın Tarihi
2025-03-13 17:15:37
Güncelleme
2025-03-28 20:00:36
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar