CVE-2025-51672: Phpgurukul Dairy Farm Shop Management System

High severity, CVSS 8.0. EPSS: 0.4% chance of exploitation in the next 30 days.

A time-based blind SQL injection vulnerability was identified in the PHPGurukul Dairy Farm Shop Management System 1.3. The vulnerability exists in the manage-companies.php file and allows remote attackers to execute arbitrary SQL code via the companyname parameter in a POST request.

Affected products

  • Phpgurukul Dairy Farm Shop Management System: version 1.3 only

Published 2025-06-26. Last modified 2026-06-17.