CVE-2025-10414 | Campcodes Grocery Sales and Inventory System 1.0 ajax.php?action=save_customer ID sql injection (EUVD-2025-29137)
A vulnerability classified as critical has been found in Campcodes Grocery Sales and Inventory System 1.0. The impacted element is an unknown function of the file /ajax.php?action=save_customer. Performing manipulation of the argument ID results in sql injection.
This vulnerability is reported as CVE-2025-10414. The attack is possible to be carried out remotely. Moreover, an exploit is present.