CVE-2025-4874
A vulnerability was found in PHPGurukul News Portal Project 4.1 and classified as critical. Affected by this issue is so
A vulnerability was found in PHPGurukul News Portal Project 4.1 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/contactus.php. The manipulation of the argument pagetitle leads to sql injection.
The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
HIGH · CVSS 7.3
EPSS 0.00277
Act now
- Public exploit or PoC is available
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0