CNNVD-202506-2635 Information

CNNVD ID

CNNVD-202506-2635

CVE-2025-6313

  • CNNVD Published: 2025-06-20

Description (Chinese)

CampCodes Sales and Inventory System是CampCodes公司的一个销售和库存系统。 CampCodes Sales and Inventory System 1.0版本存在注入漏洞,该漏洞源于文件/pages/cat_add.php中参数Category处理不当导致SQL注入,可能导致远程攻击。

Description (English)

CampCodes Sales and Information Systems is a sales and inventory system of CampCodes. There is an injection loophole in version 1.0 of CampCodes Sales and Inventory System, which stems from the mishandling of the parameter Category in the document/pages/cat add.php, which led to the injection of SQL and could lead to a long-range attack.

Hazard Level

Medium

Vulnerability Type

注入

Affected Vendor

CampCodes

Published

2025-06-20

Last Modified

2026-02-24

References

https://github.com/dragonghost2025/cve/issues/4 https://vuldb.com/?ctiid.313313 https://vuldb.com/?id.313313 https://vuldb.com/?submit.595931 https://www.campcodes.com/

Share on: