CampCodes Sales and Inventory System是CampCodes公司的一个销售和库存系统。 CampCodes Sales and Inventory System 1.0版本存在注入漏洞,该漏洞源于对文件/pages/credit_transaction_add.php中参数prod_name的错误操作导致SQL注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Campcodes | Sales and Inventory System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2025-4719 | 7.3 HIGH | Campcodes Sales and Inventory System cash_transaction.php sql injection |
| CVE-2025-4718 | 7.3 HIGH | Campcodes Sales and Inventory System customer_add.php sql injection |
| CVE-2025-4715 | 7.3 HIGH | Campcodes Sales and Inventory System view_application.php sql injection |
| CVE-2025-4714 | 7.3 HIGH | Campcodes Sales and Inventory System reprint.php sql injection |
| CVE-2025-4713 | 7.3 HIGH | Campcodes Sales and Inventory System print.php sql injection |
| CVE-2025-4712 | 7.3 HIGH | Campcodes Sales and Inventory System account_summary.php sql injection |
| CVE-2025-4711 | 7.3 HIGH | Campcodes Sales and Inventory System stockin_add.php sql injection |
| CVE-2025-4710 | 7.3 HIGH | Campcodes Sales and Inventory System transaction.php sql injection |
| CVE-2025-4709 | 7.3 HIGH | Campcodes Sales and Inventory System transaction_del.php sql injection |
| CVE-2025-4708 | 7.3 HIGH | Campcodes Sales and Inventory System sales_add.php sql injection |
| CVE-2025-4707 | 7.3 HIGH | Campcodes Sales and Inventory System transaction_add.php sql injection |
No comments yet