CNNVD-202507-068 Information

CNNVD ID

CNNVD-202507-068

CVE-2025-6963

  • CNNVD Published: 2025-07-01

Description (Chinese)

CampCodes Employee Management System是菲律宾CampCodes公司的一个员工管理系统。 CampCodes Employee Management System 1.0版本存在注入漏洞,该漏洞源于对文件/myprofile.php中参数ID的错误操作导致SQL注入。

Description (English)

CampCodes Employee Management System is an employee management system for CampCodes in the Philippines. There is an injection loophole in version 1.0 of CampCodes Employee Management System, which results from an error in the operation of parameter ID in document/myprofile.php, resulting in the injection of SQL.

Hazard Level

Medium

Vulnerability Type

注入

Affected Vendor

CampCodes

Published

2025-07-01

Last Modified

2026-02-24

References

https://www.campcodes.com/ https://github.com/ez-lbz/poc/issues/41 https://vuldb.com/?ctiid.314500 https://vuldb.com/?id.314500 https://vuldb.com/?submit.605910 https://access.redhat.com/security/cve/cve-2025-6963

Share on: