High severity8.0NVD Advisory· Published Jun 26, 2025· Updated Jun 17, 2026
CVE-2025-51672
CVE-2025-51672
Description
A time-based blind SQL injection vulnerability was identified in the PHPGurukul Dairy Farm Shop Management System 1.3. The vulnerability exists in the manage-companies.php file and allows remote attackers to execute arbitrary SQL code via the companyname parameter in a POST request.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:phpgurukul:dairy_farm_shop_management_system:1.3:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:phpgurukul:dairy_farm_shop_management_system:1.3:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: <=1.3
Patches
Vulnerability mechanics
References
1- github.com/rtnthakur/CVE/blob/main/PHPGurukul/Dairy-Farm-Shop-Management-System/SQL/SQL_injection_edit-company.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.