CVE-2025-8188: Campcodes Courier Management System edit_staff.php sql injection
Published Jul 26, 2025
·Updated
A vulnerability classified as critical has been found in Campcodes Courier Management System 1.0. This affects an unknown part of the file /editstaff.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Campcodes Courier Management System
Campcodes Courier Management System=1.0
Event History
Jul 26, 2025
CVE Published
via MITRE·12:02 PM
Data Sourced
via MITRE·12:02 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Jun 22, 58473
Event
via NVD·10:36 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-8188?
CVE-2025-8188 is classified as a critical vulnerability.
2
What type of vulnerability is CVE-2025-8188?
CVE-2025-8188 is an SQL injection vulnerability.
3
How can CVE-2025-8188 be exploited?
CVE-2025-8188 can be exploited remotely by manipulating the ID argument in the file /edit_staff.php.
4
What systems are affected by CVE-2025-8188?
CVE-2025-8188 affects Campcodes Courier Management System version 1.0.
5
How do I fix CVE-2025-8188?
To fix CVE-2025-8188, validate and sanitize all user inputs to prevent SQL injection.