Press release
Cybersecurity Researcher Abimel S B Kulumala Identifies Critical SQL Injection Vulnerability in Popular PHP Project

Abimel S B Kulumala secures CVE-2025-51092 recognition in NVD for uncovering critical SQL Injection vulnerability.
The issue impacts critical functions such as logIn(), signUp(), and the handling of dynamic $table variables, along with insufficient sanitization in the prepareData() function. Remote attackers can exploit this flaw by injecting malicious SQL commands through vulnerable login and signup inputs or by tampering with the $table parameter.
Exploitation can lead to authentication bypass, sensitive data leakage (usernames, emails, hashed passwords), database manipulation, and privilege escalation, resulting in full compromise of the application's confidentiality, integrity, and availability.
Reference: CVE-2025-51092 Detail - NVD
About Abimel S B Kulumala:
Abimel S B Kulumala is a cybersecurity researcher with expertise in vulnerability discovery and secure application development. His contributions focus on improving web security by uncovering critical flaws and recommending effective remediation strategies. He is ranked 34 in the list of top 200 cybersecurity professionals Published by Favikon.
Reported by: Abimel S B Kulumala
CVE ID: CVE-2025-51092
Status: Accepted by National Vulnerability Database (NVD)
kulumala house
kulumala, aletty
puliyarakonam PO, Trivnadrum- 695573
Gatherem Collaborations- Software development company
This release was published on openPR.
Permanent link to this press release:
Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.
You can edit or delete your press release Cybersecurity Researcher Abimel S B Kulumala Identifies Critical SQL Injection Vulnerability in Popular PHP Project here
News-ID: 4164426 • Views: …