CVE-2025-15390

A security flaw has been discovered in PHPGurukul Small CRM 4.0. This impacts an unknown function of the file /admin/edit-user.php. The manipulation results in missing authorization. It is possible to launch the attack remotely. The exploit has been released to the public and may be exploited.
Configurations

Configuration 1 (hide)

cpe:2.3:a:phpgurukul:small_crm:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-12-31 16:15

Updated : 2026-01-13 22:29


NVD link : CVE-2025-15390

Mitre link : CVE-2025-15390

CVE.ORG link : CVE-2025-15390


JSON object : View

Products Affected

phpgurukul

  • small_crm
CWE
CWE-862

Missing Authorization

CWE-863

Incorrect Authorization