CVE-2025-9770: Campcodes Hospital Management System Admin Dashboard Login admin sql injection
A weakness has been identified in Campcodes Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/ of the component Admin Dashboard Login. This manipulation of the argument Password causes sql injection. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9770?
CVE-2025-9770 has been classified as a high severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2025-9770?
To fix CVE-2025-9770, sanitize and validate all user inputs on the Admin Dashboard Login to prevent SQL injection.
Which versions of Campcodes Hospital Management System are affected by CVE-2025-9770?
CVE-2025-9770 affects Campcodes Hospital Management System version 1.0.
What type of attack is associated with CVE-2025-9770?
CVE-2025-9770 is associated with SQL injection attacks that can manipulate backend database queries.
Is there a workaround for CVE-2025-9770 until a patch is released?
Implementing input validation and limiting database permissions can serve as temporary workarounds for CVE-2025-9770.