First published: Sat May 10 2025(Updated: )
A vulnerability classified as critical has been found in Campcodes Online Food Ordering System 1.0. This affects an unknown part of the file /routers/add-item.php. The manipulation of the argument price leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Campcodes Online Food Ordering System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-4507 has been classified as a critical severity vulnerability.
CVE-2025-4507 affects the /routers/add-item.php file, allowing for SQL injection through manipulation of the price argument.
Yes, CVE-2025-4507 can be exploited remotely by attackers.
To mitigate CVE-2025-4507, sanitize and validate inputs to the price argument in the application.
Yes, Campcodes Online Food Ordering System 1.0 is vulnerable to CVE-2025-4507 due to the identified SQL injection risk.