PT-2025-44749 · Phpgurukul · Phpgurukul News Portal

Nishant_Kumar

·

Publicado

2025-11-03

·

Atualizado

2025-11-05

·

CVE-2025-12616

CVSS v3.1

5.9

Média

VetorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions PHPGurukul News Portal version 1.0
Description A flaw exists in PHPGurukul News Portal 1.0 where manipulation of an unknown function within the /onps/settings.py file can lead to the insertion of sensitive information into debugging code. This attack can be initiated remotely and is considered to have high complexity and difficult exploitability. The exploit is publicly available.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-12616

Produtos afetados

Phpgurukul News Portal