CVE-2025-11077
HIGHCampcodes Online Learning Management System 1.0 - SQL Injection
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2025-11077. PoCs published by byteReaper77.
AI-analyzed exploit summary This repository contains a proof-of-concept exploit for CVE-2025-11077, a blind SQL injection vulnerability in the Online Learning Management System. The exploit uses crafted POST requests to extract database information and includes time-based blind SQLi techniques.
Description
A vulnerability was determined in Campcodes Online Learning Management System 1.0. Affected is an unknown function of the file /admin/add_content.php. Executing manipulation of the argument Title can lead to sql injection. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.
Exploits (1)
This repository contains a proof-of-concept exploit for CVE-2025-11077, a blind SQL injection vulnerability in the Online Learning Management System. The exploit uses crafted POST requests to extract database information and includes time-based blind SQLi techniques.
References (5)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L