Campcodes Online Recruitment Management System
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Campcodes Online Recruitment Management System.
By the Year
In 2026 there have been 0 vulnerabilities in Campcodes Online Recruitment Management System. Last year, in 2025 Online Recruitment Management System had 12 security vulnerabilities published. Right now, Online Recruitment Management System is on track to have less security vulnerabilities in 2026 than it did last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 12 | 9.72 |
It may take a day or so for new Online Recruitment Management System vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Campcodes Online Recruitment Management System Security Vulnerabilities
Unbounded SQLi in Campcodes OSM 1.0 via view_vacancy ID
CVE-2025-8950
9.8 - Critical
- August 14, 2025
A vulnerability was identified in Campcodes Online Recruitment Management System 1.0. This issue affects some unknown processing of the file /Recruitment/index.php?page=view_vacancy. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Campcodes 1.0 SQLi via ID in /admin/ajax.php: remote exploit
CVE-2025-8336
9.8 - Critical
- July 30, 2025
A vulnerability classified as critical was found in Campcodes Online Recruitment Management System 1.0. This vulnerability affects unknown code of the file /admin/ajax.php?action=save_user. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Remote SQLi in Campcodes ORMS 1.0 delete_recruitment_status
CVE-2025-8334
9.8 - Critical
- July 30, 2025
A vulnerability was found in Campcodes Online Recruitment Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/ajax.php?action=delete_recruitment_status. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
1.0 via /admin/ajax.php
CVE-2025-8274
9.8 - Critical
- July 28, 2025
A vulnerability classified as critical was found in Campcodes Online Recruitment Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/ajax.php?action=save_recruitment_status. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Campcodes ORMS 1.0 SQLi via /admin/ajax.php delete_vacancy ID
CVE-2025-7436
9.8 - Critical
- July 11, 2025
A vulnerability was found in Campcodes Online Recruitment Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/ajax.php?action=delete_vacancy. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Campcodes ORM Sys 1.0 SQLI in /admin/view_vacancy.php (remote)
CVE-2025-7136
9.8 - Critical
- July 07, 2025
A vulnerability, which was classified as critical, was found in Campcodes Online Recruitment Management System 1.0. Affected is an unknown function of the file /admin/view_vacancy.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Critical SQLi in Campcodes Online Recruitment Mgmt 1.0 via save_vacancy
CVE-2025-7135
9.8 - Critical
- July 07, 2025
A vulnerability, which was classified as critical, has been found in Campcodes Online Recruitment Management System 1.0. This issue affects some unknown processing of the file /admin/ajax.php?action=save_vacancy. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Campcodes ORM System 1.0 SQLi via /admin/ajax.php?action=delete_application
CVE-2025-7134
9.8 - Critical
- July 07, 2025
A vulnerability classified as critical was found in Campcodes Online Recruitment Management System 1.0. This vulnerability affects unknown code of the file /admin/ajax.php?action=delete_application. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Campcodes Online Recruitment System 1.0 Remote SQLi via ID in view_application.php
CVE-2025-6567
9.8 - Critical
- June 24, 2025
A vulnerability was found in Campcodes Online Recruitment Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file Recruitment/admin/view_application.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Campcodes OCRM 1.0 unrestricted img upload via /admin/ajax.php (About Content Page)
CVE-2025-6422
8.8 - High
- June 21, 2025
A vulnerability classified as critical was found in Campcodes Online Recruitment Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/ajax.php?action=save_settings of the component About Content Page. The manipulation of the argument img leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Authorization
Campcodes ORM 1.0 SQLi via /admin/ajax.php?action=save_application
CVE-2025-5677
9.8 - Critical
- June 05, 2025
A vulnerability was found in Campcodes Online Recruitment Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /admin/ajax.php?action=save_application. The manipulation of the argument position_id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Critical SQLi in Campcodes ORMS 1.0 via /admin/ajax.php
CVE-2025-5676
9.8 - Critical
- June 05, 2025
A vulnerability was found in Campcodes Online Recruitment Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/ajax.php?action=login. The manipulation of the argument Username leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Campcodes Online Recruitment Management System or by Campcodes? Click the Watch button to subscribe.