Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-15454 | A vulnerability classified as critical has been found in PHPGurukul Park Ticketing Management System 2.0. Affected is an unknown function of the file /forgot-password.php. The manipulation of the argument email/contactno leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. |
Wed, 21 May 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Phpgurukul
Phpgurukul park Ticketing Management System |
|
| CPEs | cpe:2.3:a:phpgurukul:park_ticketing_management_system:2.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Phpgurukul
Phpgurukul park Ticketing Management System |
Fri, 16 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 16 May 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability classified as critical has been found in PHPGurukul Park Ticketing Management System 2.0. Affected is an unknown function of the file /forgot-password.php. The manipulation of the argument email/contactno leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | PHPGurukul Park Ticketing Management System forgot-password.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-05-16T14:50:12.971Z
Reserved: 2025-05-15T14:04:44.403Z
Link: CVE-2025-4781
Updated: 2025-05-16T14:50:04.122Z
Status : Analyzed
Published: 2025-05-16T15:15:49.020
Modified: 2025-05-21T20:59:18.993
Link: CVE-2025-4781
No data.
OpenCVE Enrichment
No data.
EUVD