PT-2025-38239 · Phpgurukul · Online Discussion Forum

Maximdevere

·

Published

2025-09-17

·

Updated

2025-09-17

·

CVE-2025-10604

CVSS v3.1
7.3
VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

A vulnerability was identified in PHPGurukul Online Discussion Forum 1.0. This affects an unknown part of the file /admin/edit member.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit is publicly available and might be used.

Exploit

Fix

Special Elements Injection

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-10604

Affected Products

Online Discussion Forum