CVE-2025-7120: Campcodes Complaint Management System check_availability.php sql injection
A vulnerability was found in Campcodes Complaint Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /users/checkavailability.php. The manipulation of the argument email leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7120?
CVE-2025-7120 is classified as a critical severity vulnerability.
How do I fix CVE-2025-7120?
To fix CVE-2025-7120, ensure proper sanitization and parameterization of SQL queries related to the email input.
What type of vulnerability is CVE-2025-7120?
CVE-2025-7120 is an SQL injection vulnerability affecting the Campcodes Complaint Management System.
Which version of Campcodes Complaint Management System is affected by CVE-2025-7120?
CVE-2025-7120 affects Campcodes Complaint Management System version 1.0.
What could an attacker do with CVE-2025-7120?
An attacker could exploit CVE-2025-7120 to manipulate SQL queries, leading to unauthorized data access.