CVE-2025-9750: Campcodes Online Learning Management System login.php sql injection
A security flaw has been discovered in Campcodes Online Learning Management System 1.0. This vulnerability affects unknown code of the file /admin/login.php. The manipulation of the argument Username results in sql injection. It is possible to launch the attack remotely. The exploit has been released to the public and may be exploited.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9750?
CVE-2025-9750 is classified as a high-severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2025-9750?
To fix CVE-2025-9750, sanitize and parameterize user inputs in the '/admin/login.php' file to prevent SQL injection.
What kind of attack can be executed through CVE-2025-9750?
CVE-2025-9750 can be exploited to perform remote SQL injection attacks that may compromise the database.
Which software is affected by CVE-2025-9750?
CVE-2025-9750 affects the Campcodes Online Learning Management System version 1.0.
Is remote access required to exploit CVE-2025-9750?
Yes, the exploitation of CVE-2025-9750 can be conducted remotely without physical access to the system.