CVE-2025-9694: Campcodes Advanced Online Voting System login.php sql injection
A vulnerability was determined in Campcodes Advanced Online Voting System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/login.php. Executing manipulation of the argument Username can lead to sql injection. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9694?
CVE-2025-9694 is a critical vulnerability due to its potential for remote SQL injection attacks.
How do I fix CVE-2025-9694?
To fix CVE-2025-9694, sanitize and validate user inputs in the /admin/login.php file to prevent SQL injection.
What are the risks associated with CVE-2025-9694?
Risks associated with CVE-2025-9694 include unauthorized access to the database and potential data manipulation.
Can CVE-2025-9694 be exploited remotely?
Yes, CVE-2025-9694 can be exploited remotely, making it especially dangerous for exposed systems.
Which software is affected by CVE-2025-9694?
CVE-2025-9694 affects Campcodes Advanced Online Voting System version 1.0.