Security Advisory

CVE-2025-9794

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-09-01 20:32:07
Last updated 2025-09-02 15:08:44
Assigner VulDB
State PUBLISHED

Description

A flaw has been found in Campcodes Computer Sales and Inventory System 1.0. The affected element is an unknown function of the file /pages/pos_transac.php?action=add. Executing manipulation of the argument cash/firstname can lead to sql injection. The attack may be performed from remote. The exploit has been published and may be used. Other parameters might be affected as well.