First published: Sat May 10 2025(Updated: )
A vulnerability has been found in Campcodes Sales and Inventory System 1.0 and classified as critical. This vulnerability affects unknown code of the file /pages/creditor_add.php. The manipulation leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Campcodes Sales and Inventory System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-4502 is classified as a critical vulnerability.
CVE-2025-4502 allows for SQL injection attacks that can be initiated remotely.
CVE-2025-4502 affects the file /pages/creditor_add.php in Campcodes Sales and Inventory System 1.0.
To fix CVE-2025-4502, you should update to the latest version of Campcodes Sales and Inventory System that contains the necessary security patches.
If you cannot update your software, you should implement input validation and parameterized queries to mitigate the risk of SQL injection.