CVE-2025-51671

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
26/06/2025
Last modified:
01/07/2025

Description

A SQL injection vulnerability was discovered in the PHPGurukul Dairy Farm Shop Management System 1.3. The vulnerability allows remote attackers to execute arbitrary SQL code via the category and categorycode parameters in a POST request to the manage-categories.php file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:phpgurukul:dairy_farm_shop_management_system:1.3:*:*:*:*:*:*:*