CVE-2025-10413 | Campcodes Grocery Sales and Inventory System 1.0 ajax.php?action=delete_customer ID sql injection (EUVD-2025-29134)
A vulnerability described as critical has been identified in Campcodes Grocery Sales and Inventory System 1.0. The affected element is an unknown function of the file /ajax.php?action=delete_customer. Such manipulation of the argument ID leads to sql injection.
This vulnerability is documented as CVE-2025-10413. The attack can be executed remotely. Additionally, an exploit exists.