---
id: CVE-2023-2204
title: A vulnerability was found in Campcodes Retro Basketball Shoes Online Store 1.0
summary: >-
  A vulnerability was found in Campcodes Retro Basketball Shoes Online Store
  1.0. It has been declared as critical. Affected by this vulnerability is an
  unknown functionality of the file faqs.php. The manipulation of the argument
  id leads …
severity: medium
cvss: 6.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L'
cwe:
  - CWE-89
vendor: campcodes
product: retro_basketball_shoes_online_store
affected:
  - retro_basketball_shoes_online_store = 1.0
published: '2023-04-21'
updated: '2026-07-31'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2023-2204'
references:
  - url: >-
      https://github.com/E1CHO/cve_hub/blob/main/Retro%20Basketball%20Shoes%20Online%20Store/Retro%20Basketball%20Shoes%20Online%20Store%20-%20vuln%205.pdf
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?ctiid.226969'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?id.226969'
    label: cna@vuldb.com
  - url: >-
      https://github.com/E1CHO/cve_hub/blob/main/Retro%20Basketball%20Shoes%20Online%20Store/Retro%20Basketball%20Shoes%20Online%20Store%20-%20vuln%205.pdf
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://vuldb.com/?ctiid.226969'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://vuldb.com/?id.226969'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.00607
epssPercentile: 0.47731
ingestedAt: '2026-07-31T19:01:34.619Z'
---

## Overview

A vulnerability was found in Campcodes Retro Basketball Shoes Online Store 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file faqs.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-226969 was assigned to this vulnerability.

## Affected

- `retro_basketball_shoes_online_store = 1.0`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
