Unknown · Phpgurukul Online Course Registration System · CVE-2025-10025
**Name of the Vulnerable Software and Affected Versions**
PHPGurukul Online Course Registration version 3.1
**Description**
A SQL injection issue exists in PHPGurukul Online Course Registration 3.1. The vulnerability is located in an unknown function of the `/admin/semester.php` file. The `semester` argument can be manipulated to exploit this issue, allowing for remote attacks. The exploit details have been publicly disclosed.
**Recommendations**
As a temporary workaround, consider restricting access to the `/admin/semester.php` file to minimize the risk of exploitation.