5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability has been found in Campcodes Supplier Management System 1.0. This impacts an unknown function of the file /manufacturer/edit_product.php. Such manipulation of the argument cmbProductUnit leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Basic Information
ID
CVE-2025-13260
Source
VulDB
Published
Nov 17, 2025 at 03:02
Affected Product
Vendor
Campcodes
Product
Supplier Management System
Version
1.0
Affected Versions
Campcodes Supplier Management System 1.0