CVE-2025-45947: Phpgurukul Online Banquet Booking System

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

An issue in phpgurukul Online Banquet Booking System V1.2 allows an attacker to execute arbitrary code via the /obbs/change-password.php file of the My Account - Change Password component

Affected products

  • Phpgurukul Online Banquet Booking System: version 1.2 only

Published 2025-04-28. Last modified 2026-07-05.