Supplier Management System Campcodes Supplier Management System

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Campcodes Supplier Management System.

By the Year

In 2026 there have been 1 vulnerability in Campcodes Supplier Management System with an average score of 6.3 out of ten. Last year, in 2025 Supplier Management System had 12 security vulnerabilities published. Right now, Supplier Management System is on track to have less security vulnerabilities in 2026 than it did last year. Last year, the average CVE base score was greater by 0.62

Year Vulnerabilities Average Score
2026 1 6.30
2025 12 6.92
2024 6 8.04

It may take a day or so for new Supplier Management System vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Campcodes Supplier Management System Security Vulnerabilities

CVE-2026-0597
CVE-2026-0597 6.3 - Medium - January 05, 2026

A flaw has been found in Campcodes Supplier Management System 1.0. Affected by this issue is some unknown functionality of the file /retailer/edit_profile.php. This manipulation of the argument txtRetailerAddress causes sql injection. Remote exploitation of the attack is possible. The exploit has been published and may be used.

SQL Injection

A vulnerability has been found in Campcodes Supplier Management System 1.0
CVE-2025-15207 7.3 - High - December 29, 2025

A vulnerability has been found in Campcodes Supplier Management System 1.0. Affected is an unknown function of the file /admin/view_products.php. The manipulation of the argument chkId[] leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

A flaw has been found in Campcodes Supplier Management System 1.0
CVE-2025-15206 7.3 - High - December 29, 2025

A flaw has been found in Campcodes Supplier Management System 1.0. This impacts an unknown function of the file /admin/add_area.php. Executing a manipulation of the argument txtAreaCode can lead to sql injection. The attack may be performed from remote. The exploit has been published and may be used.

SQL Injection

SQLi in Campcodes Supplier Mgmt Sys 1.0 via txtCategoryName in add_category.php
CVE-2025-14952 7.3 - High - December 19, 2025

A vulnerability was detected in Campcodes Supplier Management System 1.0. This affects an unknown function of the file /admin/add_category.php. Performing a manipulation of the argument txtCategoryName results in sql injection. The attack is possible to be carried out remotely. The exploit is now public and may be used.

SQL Injection

Campcodes Supplier Mgmt Sys 1.0: SQLi via /admin/add_retailer.php (cmbAreaCode)
CVE-2025-14877 7.3 - High - December 18, 2025

A vulnerability was identified in Campcodes Supplier Management System 1.0. This affects an unknown function of the file /admin/add_retailer.php. The manipulation of the argument cmbAreaCode leads to sql injection. The attack is possible to be carried out remotely. The exploit is publicly available and might be used.

SQL Injection

SQLi in Campcodes Supplier Management System 1.0 /admin/view_unit.php
CVE-2025-14664 7.3 - High - December 14, 2025

A vulnerability was identified in Campcodes Supplier Management System 1.0. This issue affects some unknown processing of the file /admin/view_unit.php. The manipulation of the argument chkId[] leads to sql injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

SQL Injection

SQLi in Campcodes Supplier Mgmt Sys 1.0 via /admin/add_unit.php
CVE-2025-14515 7.3 - High - December 11, 2025

A vulnerability has been found in Campcodes Supplier Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/add_unit.php. Such manipulation of the argument txtunitDetails leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

CVE-2025-14514 Remote SQLi Campcodes Supplier Mgmt 1.0 /admin/add_distributor.php
CVE-2025-14514 7.3 - High - December 11, 2025

A flaw has been found in Campcodes Supplier Management System 1.0. Affected is an unknown function of the file /admin/add_distributor.php. This manipulation of the argument txtDistributorAddress causes sql injection. The attack can be initiated remotely. The exploit has been published and may be used.

SQL Injection

Campcodes Supplier Management System 1.0 SQLi via txtUsername in /index.php Rmt
CVE-2025-13554 7.3 - High - November 23, 2025

A security vulnerability has been detected in Campcodes Supplier Management System 1.0. This impacts an unknown function of the file /index.php of the component Login. Such manipulation of the argument txtUsername leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.

SQL Injection

CVE-2025-13424: Campcodes 1.0 SQLi in /admin/add_product.php via txtProductName
CVE-2025-13424 4.7 - Medium - November 20, 2025

A vulnerability has been found in Campcodes Supplier Management System 1.0. This affects an unknown function of the file /admin/add_product.php. The manipulation of the argument txtProductName leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.

SQL Injection

Campcodes Supplier Mgt Sys 1.0: Remote SQLi via /manufacturer/confirm_order.php
CVE-2025-13291 7.3 - High - November 17, 2025

A vulnerability was found in Campcodes Supplier Management System 1.0. This affects an unknown part of the file /manufacturer/confirm_order.php. Performing a manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit has been made public and could be used.

SQL Injection

SQLi in Campcodes Supplier Management System 1.0 edit_product.php via cmbProductUnit
CVE-2025-13260 6.3 - Medium - November 17, 2025

A vulnerability has been found in Campcodes Supplier Management System 1.0. This impacts an unknown function of the file /manufacturer/edit_product.php. Such manipulation of the argument cmbProductUnit leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SQL Injection in Campcodes Supplier Management System 1.0 /edit_unit.php
CVE-2025-13259 6.3 - Medium - November 17, 2025

A flaw has been found in Campcodes Supplier Management System 1.0. This affects an unknown function of the file /manufacturer/edit_unit.php. This manipulation of the argument ID causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.

SQL Injection

Campcodes SMS 1.0 /admin/edit_area.php SQLi via id (Critical)
CVE-2024-8344 8.8 - High - August 30, 2024

A vulnerability has been found in Campcodes Supplier Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/edit_area.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SQL Injection in CampCodes Supplier Management System v1.0 view_invoice_items.php
CVE-2024-41550 - July 24, 2024

CampCodes Supplier Management System v1.0 is vulnerable to SQL injection via Supply_Management_System/admin/view_invoice_items.php?id= .

SQLi in CampCodes Supplier Management v1.0 via view_order_items.php
CVE-2024-41551 9.8 - Critical - July 24, 2024

CampCodes Supplier Management System v1.0 is vulnerable to SQL injection via Supply_Management_System/admin/view_order_items.php?id= .

SQL Injection

CVE-2024-22627: SQLi in edit_distributor.php of CSMS v1.0
CVE-2024-22627 7.2 - High - January 16, 2024

Complete Supplier Management System v1.0 is vulnerable to SQL Injection via /Supply_Management_System/admin/edit_distributor.php?id=.

SQL Injection

SQL Injection in Complete Supplier Management System v1.0 edit_category.php
CVE-2024-22625 7.2 - High - January 16, 2024

Complete Supplier Management System v1.0 is vulnerable to SQL Injection via /Supply_Management_System/admin/edit_category.php?id=.

SQL Injection

SQLi in Complete Supplier Management v1.0 via edit_retailer.php id
CVE-2024-22626 7.2 - High - January 16, 2024

Complete Supplier Management System v1.0 is vulnerable to SQL Injection via /Supply_Management_System/admin/edit_retailer.php?id=.

SQL Injection

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Campcodes Supplier Management System or by Campcodes? Click the Watch button to subscribe.

Campcodes
Vendor

subscribe