CNNVD-202509-033 Information

CNNVD ID

CNNVD-202509-033

CVE-2025-9794

  • CNNVD Published: 2025-09-01

Description (Chinese)

CampCodes Computer Sales and Inventory System是菲律宾CampCodes公司的一个计算机销售和库存系统。 CampCodes Computer Sales and Inventory System 1.0版本存在安全漏洞,该漏洞源于对文件/pages/pos_transac.php中参数cash/firstname的错误操作导致SQL注入。

Description (English)

CampCodes Company Sales and Information Systems is a computer sales and inventory system for CampCodes in the Philippines. There is a security loophole in version 1.0 of CampCodes Company Sales and Information System, which results from an error in the qL injection of the parameter Cash/firstname in the file/pages/pos transac.php.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

CampCodes

Published

2025-09-01

Last Modified

2026-02-24

References

https://www.campcodes.com/ https://vuldb.com/?submit.642559 https://vuldb.com/?submit.641103 https://vuldb.com/?id.322109 https://vuldb.com/?ctiid.322109 https://github.com/e1evensu/cve/issues/1 https://github.com/Yuanwennnn/cve/issues/2 https://nvd.nist.gov/vuln/detail/CVE-2025-9794 https://access.redhat.com/security/cve/cve-2025-9794

Share on: