Security Advisory

CVE-2025-9506

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-08-27 04:02:07
Last updated 2025-08-27 15:03:46
Assigner VulDB
State PUBLISHED

Description

A vulnerability has been found in Campcodes Online Loan Management System 1.0. This affects an unknown part of the file /ajax.php?action=delete_plan. Such manipulation of the argument ID leads to sql injection. The attack may be performed from a remote location. The exploit has been disclosed to the public and may be used.