PHPGurukul Old Age Home Management System
cpe:2.3:a:phpgurukul:old_age_home_management_system:*:*:*:*:*:*:*
- 1.0
A critical SQL injection vulnerability has been identified in PHPGurukul Old Age Home Management System version 1.0. The issue resides in the '/admin/login.php' file, where insufficient validation of the 'Username' parameter allows attackers to inject malicious SQL queries. This vulnerability can be exploited remotely, potentially leading to unauthorized access to the database, modification or deletion of data, and exposure of sensitive information.
Exploitation of this vulnerability allows for SQL injection, which can lead to unauthorized database access, data manipulation, and exposure of sensitive information.
To reproduce this vulnerability, navigate to the login page of the admin panel. Enter a crafted SQL payload in the 'Username' field. The lack of proper input validation will allow the injected SQL code to be executed, manipulating the database query and potentially bypassing authentication or accessing restricted data.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.