📦 Supplier Management System

by Campcodes

🔍 What is Supplier Management System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-41551

CRITICAL CVSS 9.8 Jul 24, 2024

CampCodes Supplier Management System v1.0 contains a SQL injection vulnerability in the admin view_order_items.php endpoint that allows attackers to execute arbitrary SQL commands. This affects all de...

CVE-2025-15206

HIGH CVSS 7.3 Dec 29, 2025

Campcodes Supplier Management System 1.0 contains a SQL injection vulnerability in the /admin/add_area.php file via the txtAreaCode parameter. This allows remote attackers to execute arbitrary SQL com...

CVE-2025-15207

HIGH CVSS 7.3 Dec 29, 2025

Campcodes Supplier Management System 1.0 contains a SQL injection vulnerability in the /admin/view_products.php file through manipulation of the chkId[] parameter. This allows remote attackers to exec...

CVE-2025-14952

HIGH CVSS 7.3 Dec 19, 2025

Campcodes Supplier Management System 1.0 contains a SQL injection vulnerability in the /admin/add_category.php file via the txtCategoryName parameter. This allows remote attackers to execute arbitrary...

CVE-2025-14877

HIGH CVSS 7.3 Dec 18, 2025

This SQL injection vulnerability in Campcodes Supplier Management System 1.0 allows attackers to execute arbitrary SQL commands through the cmbAreaCode parameter in the /admin/add_retailer.php file. A...

CVE-2025-14664

HIGH CVSS 7.3 Dec 14, 2025

Campcodes Supplier Management System 1.0 contains a SQL injection vulnerability in the /admin/view_unit.php file through manipulation of the chkId[] parameter. This allows remote attackers to execute ...

CVE-2025-14515

HIGH CVSS 7.3 Dec 11, 2025

Campcodes Supplier Management System 1.0 contains a SQL injection vulnerability in the /admin/add_unit.php file via the txtunitDetails parameter. This allows remote attackers to execute arbitrary SQL ...

CVE-2025-14514

HIGH CVSS 7.3 Dec 11, 2025

Campcodes Supplier Management System 1.0 contains a SQL injection vulnerability in the /admin/add_distributor.php file via the txtDistributorAddress parameter. This allows remote attackers to execute ...

CVE-2025-13554

HIGH CVSS 7.3 Nov 23, 2025

Campcodes Supplier Management System 1.0 contains a SQL injection vulnerability in the login component's username parameter. Attackers can remotely execute arbitrary SQL commands, potentially compromi...

CVE-2025-13291

HIGH CVSS 7.3 Nov 17, 2025

CVE-2025-13291 is a SQL injection vulnerability in Campcodes Supplier Management System 1.0 that allows remote attackers to execute arbitrary SQL commands via the ID parameter in /manufacturer/confirm...

CVE-2024-41550

HIGH CVSS 7.2 Jul 24, 2024

CampCodes Supplier Management System v1.0 contains a SQL injection vulnerability in the admin view_invoice_items.php endpoint via the 'id' parameter. This allows attackers to execute arbitrary SQL com...

CVE-2024-22625

HIGH CVSS 7.2 Jan 16, 2024

Complete Supplier Management System v1.0 contains a SQL injection vulnerability in the edit_category.php admin endpoint that allows attackers to execute arbitrary SQL commands. This affects all deploy...

CVE-2024-22627

HIGH CVSS 7.2 Jan 16, 2024

Complete Supplier Management System v1.0 contains a SQL injection vulnerability in the distributor editing functionality. Attackers can manipulate database queries through the 'id' parameter in the ad...

CVE-2025-13424

MEDIUM CVSS 4.7 Nov 20, 2025

Campcodes Supplier Management System 1.0 contains a SQL injection vulnerability in the /admin/add_product.php file via the txtProductName parameter. This allows attackers to execute arbitrary SQL comm...

CVE-2025-13260

MEDIUM CVSS 6.3 Nov 17, 2025

Campcodes Supplier Management System 1.0 contains a SQL injection vulnerability in the manufacturer/edit_product.php file via the cmbProductUnit parameter. This allows remote attackers to execute arbi...

CVE-2025-13259

MEDIUM CVSS 6.3 Nov 17, 2025

CVE-2025-13259 is a SQL injection vulnerability in Campcodes Supplier Management System 1.0 that allows attackers to execute arbitrary SQL commands via the ID parameter in /manufacturer/edit_unit.php....

CVE-2024-8344

MEDIUM CVSS 6.3 Aug 30, 2024

Campcodes Supplier Management System 1.0 contains a critical SQL injection vulnerability in the /admin/edit_area.php file via the 'id' parameter. This allows remote attackers to execute arbitrary SQL ...