Security Advisory

CVE-2025-4900

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-05-18 23:00:11
Last updated 2025-05-19 14:01:41
Assigner VulDB
State PUBLISHED

Description

A vulnerability classified as critical has been found in Campcodes Sales and Inventory System 1.0. Affected is an unknown function of the file /pages/payment.php. The manipulation of the argument cid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.