Metrics
Affected Vendors & Products
Tue, 10 Jun 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Phpgurukul
Phpgurukul small Crm |
|
CPEs | cpe:2.3:a:phpgurukul:small_crm:3.0:*:*:*:*:*:*:* | |
Vendors & Products |
Phpgurukul
Phpgurukul small Crm |
Tue, 27 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 27 May 2025 03:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in PHPGurukul Small CRM 3.0 and classified as critical. This vulnerability affects unknown code of the file /admin/change-password.php. The manipulation of the argument oldpass leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well. | |
Title | PHPGurukul Small CRM change-password.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-27T02:31:08.292Z
Updated: 2025-05-27T13:37:33.454Z
Reserved: 2025-05-26T18:00:13.948Z
Link: CVE-2025-5226

Updated: 2025-05-27T13:37:10.933Z

Status : Analyzed
Published: 2025-05-27T03:15:24.783
Modified: 2025-06-10T15:43:41.087
Link: CVE-2025-5226

No data.