7.2
CVSSv3

CVE-2025-25387

CVSSv4: NA | CVSSv3: 7.2 | CVSSv2: NA | VMScore: 820 | EPSS: 0.0022 | KEV: Not Included
Published: 13/02/2025 Updated: 14/02/2025

Vulnerability Summary

SQL Injection in PHPGurukul Land Record System v1.0 Remote Code Execution

A SQL Injection vulnerability was found in /admin/manage-propertytype.php in PHPGurukul Land Record System v1.0, which allows remote malicious users to execute arbitrary code via the propertytype POST request parameter.