Metrics
Affected Vendors & Products
Wed, 09 Jul 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Phpgurukul
Phpgurukul online Notes Sharing System |
|
CPEs | cpe:2.3:a:phpgurukul:online_notes_sharing_system:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
Phpgurukul
Phpgurukul online Notes Sharing System |
Tue, 08 Jul 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 08 Jul 2025 01:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as critical, was found in PHPGurukul Online Notes Sharing System 1.0. This affects an unknown part of the file /Dashboard of the component Cookie Handler. The manipulation of the argument sessionid leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The original researcher disclosure suspects an XPath Injection vulnerability; however, the provided attack payload appears to be characteristic of an SQL Injection attack. | |
Title | PHPGurukul Online Notes Sharing System Cookie Dashboard sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
|
|
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-07-08T01:03:15.619Z
Updated: 2025-07-08T16:13:07.620Z
Reserved: 2025-07-07T06:02:01.587Z
Link: CVE-2025-7155

Updated: 2025-07-08T14:28:23.072Z

Status : Analyzed
Published: 2025-07-08T01:15:26.400
Modified: 2025-07-09T13:52:30.290
Link: CVE-2025-7155

No data.