High severity7.5NVD Advisory· Published Nov 18, 2025· Updated Jun 17, 2026
CVE-2025-63955
CVE-2025-63955
Description
A Cross-Site Request Forgery (CSRF) vulnerability in the manage-students.php component of PHPGurukul Student Record System v3.2 allows an attacker to trick an authenticated administrator into submitting a forged request. This leads to the unauthorized deletion of user accounts, causing a Denial of Service (DoS).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<3.2+ 2 more
- (no CPE)range: <3.2
- (no CPE)
- cpe:2.3:a:phpgurukul:student_record_system:3.2:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- github.com/Wayne-arul/CVE-Disclosures/tree/main/CVE-2025-63955nvdExploitThird Party Advisory
- phpgurukul.com/student-record-system-php/nvdProduct
News mentions
0No linked articles in our index yet.