CNNVD-202507-2525 Information

CNNVD ID

CNNVD-202507-2525

CVE-2025-7840

  • CNNVD Published: 2025-07-19

Description (Chinese)

CampCodes Online Movie Theater Seat Reservation System是菲律宾CampCodes公司的一个在线影院座位预订系统。 Campcodes Online Movie Theater Seat Reservation System 1.0版本存在代码注入漏洞,该漏洞源于文件/index.php中参数Firstname/Lastname处理不当导致跨站脚本。

Description (English)

CampCodes Online Movie Theater Sea Supply System is an online seating reservation system for the Philippine company CampCodes. There is a code-injection loophole in version 1.0 of Campcodes Online Movie Theater Sea Reservation System, which stems from the mishandling of the parameter Firstname/Lastname in the file/index.php, resulting in the cross-site script.

Hazard Level

Critical

Vulnerability Type

代码注入

Affected Vendor

CampCodes

Published

2025-07-19

Last Modified

2026-02-24

References

https://www.campcodes.com/ https://github.com/N1n3b9S/cve/issues/9 https://vuldb.com/?submit.617678 https://vuldb.com/?ctiid.316941 https://vuldb.com/?id.316941 https://access.redhat.com/security/cve/cve-2025-7840

Share on: