Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

0X0A1Lphh

#24485of 53,632
9.8Total CVSS
Vulnerabilities · 1
PT-2025-21846
9.8
2025-05-18
Unknown · Campcodes Online Shopping Portal · CVE-2025-4875
Name of the Vulnerable Software and Affected Versions: Campcodes Online Shopping Portal version 1.0 Description: A critical issue has been identified, affecting the /forgot-password.php file, where manipulation of the `email` argument leads to SQL injection. This can be initiated remotely. Recommendations: For Campcodes Online Shopping Portal version 1.0, consider restricting access to the /forgot-password.php file until a fix is available. As a temporary workaround, avoid using the `email` argument in the forgot password functionality to minimize the risk of exploitation.