CVE-2025-11555High· 7.3▾ MidnightPoC availableA vulnerability was detected in Campcodes Online Learning Management System 1.0. This affects an unknown part of the file /admin/calendar_of_events.php. The manipulation of the argument date_start results in sql injection. The attack may…
▾ Midnight zone — Critical, or high with PoC / in-the-wild
impact 40.2 · likelihood 0.1 · exploitation 12
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 1 source. Availability, not in-the-wild use.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.4%
1 GitHub repo (last check)
A vulnerability was detected in Campcodes Online Learning Management System 1.0. This affects an unknown part of the file /admin/calendar_of_events.php. The manipulation of the argument date_start results in sql injection. The attack may be launched remotely. The exploit is now public and may be used.
online_learning_management_system = 1.0Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-11599High· 7.3A weakness has been identified in Campcodes Online Apartment Visitor Management System 1.0
CVE-2025-11595Medium· 4.7A vulnerability was found in Campcodes Online Apartment Visitor Management System 1.0
CVE-2025-12339High· 7.3A security vulnerability has been detected in Campcodes Retro Basketball Shoes Online Store 1.0
CVE-2025-12338High· 7.3A weakness has been identified in Campcodes Retro Basketball Shoes Online Store 1.0
CVE-2025-12337High· 7.3A security flaw has been discovered in Campcodes Retro Basketball Shoes Online Store 1.0
CVE-2025-12336High· 7.3A vulnerability was identified in Campcodes Retro Basketball Shoes Online Store 1.0