6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A security flaw has been discovered in Campcodes Retro Basketball Shoes Online Store 1.0. This affects an unknown part of the file /admin/admin_feature.php. Performing manipulation of the argument pid results in sql injection. The attack may be initiated remotely. The exploit has been released to the public and may be exploited.
Basic Information
ID
CVE-2025-12337
Source
VulDB
Published
Oct 28, 2025 at 00:02
Affected Product
Vendor
Campcodes
Product
Retro Basketball Shoes Online Store
Version
1.0
Affected Versions
Campcodes Retro Basketball Shoes Online Store 1.0