CVE-2025-7132: Campcodes Payroll Management System ajax.php sql injection
A vulnerability was found in Campcodes Payroll Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /ajax.php?action=savepayroll. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7132?
CVE-2025-7132 has been rated as critical due to its potential for SQL injection.
How do I fix CVE-2025-7132?
To fix CVE-2025-7132, validate and sanitize all user inputs in the /ajax.php?action=save_payroll file.
What type of vulnerability is CVE-2025-7132?
CVE-2025-7132 is an SQL injection vulnerability found in Campcodes Payroll Management System.
Which systems are affected by CVE-2025-7132?
CVE-2025-7132 affects the Campcodes Payroll Management System version 1.0.
What could an attacker do with CVE-2025-7132?
An attacker could exploit CVE-2025-7132 to manipulate the database through SQL injection via the ID parameter.