CVE-2025-4735: Campcodes Sales and Inventory System product.php unrestricted upload
A vulnerability has been found in Campcodes Sales and Inventory System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /pages/product.php. The manipulation of the argument Picture leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4735?
CVE-2025-4735 is classified as a critical vulnerability.
How do I fix CVE-2025-4735?
To fix CVE-2025-4735, implement proper validation and restrictions on the file upload functionality.
What software is affected by CVE-2025-4735?
CVE-2025-4735 affects Campcodes Sales and Inventory System version 1.0.
What type of vulnerability is CVE-2025-4735?
CVE-2025-4735 involves unrestricted file upload which allows manipulation of the argument Picture.
What are the potential impacts of CVE-2025-4735?
Exploitation of CVE-2025-4735 can lead to unauthorized access and execution of arbitrary files.