CVE-2025-6959: SQL Injection in Campcodes Employee Management System
A vulnerability classified as critical has been found in Campcodes Employee Management System 1.0. Affected is an unknown function of the file /eloginwel.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
CVE-2025-6959: SQL Injection in Campcodes Employee Management System
Description
A vulnerability classified as critical has been found in Campcodes Employee Management System 1.0. Affected is an unknown function of the file /eloginwel.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Technical Details
- Data Version
- 5.1
- Assigner Short Name
- VulDB
- Date Reserved
- 2025-07-01T06:03:01.304Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 6863fdad6f40f0eb728fe345
Added to database: 7/1/2025, 3:24:29 PM
Last updated: 7/1/2025, 3:24:29 PM
Views: 1
Related Threats
CVE-2025-6960: SQL Injection in Campcodes Employee Management System
MediumCVE-2025-50641: n/a
UnknownCVE-2025-53099: CWE-288: Authentication Bypass Using an Alternate Path or Channel in getsentry sentry
MediumCVE-2025-34064: CWE-668 Exposure of Resource to Wrong Sphere in One Identity OneLogin Active Directory Connector (ADC)
CriticalCVE-2025-34063: CWE-290 Authentication Bypass by Spoofing in One Identity OneLogin Active Directory Connector (ADC)
CriticalActions
Need enhanced features?
Contact root@offseq.com for Pro access with improved analysis and higher rate limits.