6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability has been found in Campcodes Online Water Billing System 1.0. Affected by this issue is some unknown functionality of the file /process.php. The manipulation of the argument Username leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used.
Basic Information
ID
CVE-2025-9739
Source
VulDB
Published
Aug 31, 2025 at 17:32
Affected Product
Vendor
Campcodes
Product
Online Water Billing System
Version
1.0
Affected Versions
Campcodes Online Water Billing System 1.0