CVE-2025-12336
HIGHCampcodes Retro Basketball Shoes Online Store - Injection
Title source: ruleDescription
A vulnerability was identified in Campcodes Retro Basketball Shoes Online Store 1.0. Affected by this issue is some unknown functionality of the file /admin/admin_index.php. Such manipulation of the argument Username leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used.
References (5)
Scores
CVSS v3
7.3
EPSS
0.0005
EPSS Percentile
15.2%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Classification
CWE
CWE-74
CWE-89
Status
published
Affected Products (1)
campcodes/retro_basketball_shoes_online_store
Timeline
Published
Oct 28, 2025
Tracked Since
Feb 18, 2026