Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Xu Feiyang

Researcher fromChengdu University of Arts and Sciences
#25135of 53,633
9.8Total CVSS
Vulnerabilities · 1
PT-2025-41686
9.8
2025-10-11
Campcodes · Campcodes Online Apartment Visitor Management System · CVE-2025-11599
**Name of the Vulnerable Software and Affected Versions** Campcodes Online Apartment Visitor Management System version 1.0 **Description** A flaw exists in Campcodes Online Apartment Visitor Management System 1.0, specifically within the `/forgot-password.php` script. Manipulation of the `email` parameter in this file can lead to SQL injection. This allows a remote attacker to potentially execute arbitrary SQL commands. The exploit for this issue has been publicly released. **Recommendations** Apply input validation and sanitization to the `email` parameter in the `/forgot-password.php` script.