CVE-2025-11663: Campcodes Online Beauty Parlor Management System manage-services.php sql injection
A weakness has been identified in Campcodes Online Beauty Parlor Management System 1.0. The affected element is an unknown function of the file /admin/manage-services.php. This manipulation of the argument sername causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-11663?
CVE-2025-11663 is classified as a high-severity vulnerability due to its potential for remote SQL injection attacks.
How do I fix CVE-2025-11663?
To fix CVE-2025-11663, update the Campcodes Online Beauty Parlor Management System to the latest version and sanitize user inputs to prevent SQL injection.
What are the implications of CVE-2025-11663?
The implications of CVE-2025-11663 include unauthorized data access, data manipulation, or the potential for a complete system compromise.
Who is affected by CVE-2025-11663?
CVE-2025-11663 affects users of Campcodes Online Beauty Parlor Management System version 1.0 due to the identified SQL injection vulnerability.
Can CVE-2025-11663 be exploited remotely?
Yes, CVE-2025-11663 can be exploited remotely, allowing attackers to manipulate the application's argument and perform SQL injection.