What is CVE-2026-75089?
An SQL injection vulnerability has been discovered in PHPGurukul Complaint Management System 1.0, affecting the file `user/check_availability.php`. The issue allows remote exploitation through manipulation of the email argument. It is recommended to immediately apply the vendor's patch or update the software to mitigate the risk.
Azərbaycanca: PHPGurukul Complaint Management System 1.0 proqramında `user/check_availability.php` faylında SQL injection zəifliyi aşkarlanıb. Bu, uzaqdan istismar edilə bilən təhlükəsizlik boşluğudur, email parametri vasitəsilə həyata keçirilir. Təsirə məruz qalmamaq üçün dərhal proqram təminatını yeniləmək və ya istehsalçının təqdim etdiyi yamağı tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-89
FAQ2
Which version of PHPGurukul Complaint Management System is affected by CVE-2026-75089 SQL injection vulnerability?
The vulnerability was discovered in PHPGurukul Complaint Management System version 1.0.
Which parameter is manipulated to exploit the CVE-2026-75089 vulnerability?
The attack is performed through manipulation of the email parameter in the file `user/check_availability.php`.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.