A vulnerability was found in PHPGurukul Hospital Management System 4.0. It has been rated as critical. The affected element is an unknown function of the file contact.php. This manipulation of the argument pagetitle causes sql injection.

The identification of this vulnerability is CVE-2025-56215. It is possible to initiate the attack remotely. There is no exploit available.