CVE-2025-10435

Severity CVSS v4.0:
MEDIUM
Type:
CWE-74 Injection
Publication date:
15/09/2025
Last modified:
15/09/2025

Description

A security flaw has been discovered in Campcodes Computer Sales and Inventory System 1.0. The affected element is an unknown function of the file /pages/cust_edit1.php. The manipulation of the argument ID results in sql injection. The attack may be performed from remote. The exploit has been released to the public and may be exploited.