A vulnerability has been found in PHPGurukul Complaint Management System 2.0 and classified as critical. Affected is an unknown function of the file user/reset-password.php. The manipulation of the argument mobileno leads to sql injection.
This vulnerability is traded as CVE-2025-57146. It is possible to initiate the attack remotely. There is no exploit available.