CVE-2025-13556: Campcodes Online Polling System checklogin.php sql injection
A flaw has been found in Campcodes Online Polling System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/checklogin.php. Executing a manipulation of the argument myusername can lead to sql injection. The attack can be launched remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13556?
CVE-2025-13556 is considered a high severity vulnerability due to its potential for remote SQL injection attacks.
How do I fix CVE-2025-13556?
To fix CVE-2025-13556, update the Campcodes Online Polling System to the latest version that addresses this SQL injection vulnerability.
What does CVE-2025-13556 affect?
CVE-2025-13556 affects the Campcodes Online Polling System 1.0, specifically through the /admin/checklogin.php file.
Can CVE-2025-13556 be exploited remotely?
Yes, CVE-2025-13556 can be exploited remotely, allowing attackers to manipulate the myusername argument.
What type of vulnerability is CVE-2025-13556?
CVE-2025-13556 is an SQL injection vulnerability that allows for unauthorized database access via crafted requests.