PT-2025-38720 · Phpgurukul · Park Ticketing Management System

Published

2025-09-22

·

Updated

2025-09-22

·

CVE-2025-56075

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions PHPGurukul Park Ticketing Management System version 2.0
Description A SQL Injection issue exists in the normal-bwdates-reports-details.php file. This allows remote attackers to execute arbitrary SQL code by manipulating the fromdate parameter within a POST request.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-56075

Affected Products

Park Ticketing Management System