CVE-2025-4710: Campcodes Sales and Inventory System transaction.php sql injection
A vulnerability, which was classified as critical, has been found in Campcodes Sales and Inventory System 1.0. Affected by this issue is some unknown functionality of the file /pages/transaction.php. The manipulation of the argument cid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4710?
CVE-2025-4710 is classified as a critical vulnerability.
What type of vulnerability is CVE-2025-4710?
CVE-2025-4710 is an SQL injection vulnerability affecting the file /pages/transaction.php.
How do I fix CVE-2025-4710?
To fix CVE-2025-4710, you should sanitize and validate user inputs in the affected SQL queries.
Which software is affected by CVE-2025-4710?
CVE-2025-4710 affects the Campcodes Sales and Inventory System version 1.0.
What could be the impact of exploiting CVE-2025-4710?
Exploitation of CVE-2025-4710 could allow an attacker to gain unauthorized access to the database.