CVE-2025-9770: Campcodes Hospital Management System
Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.
A weakness has been identified in Campcodes Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/ of the component Admin Dashboard Login. This manipulation of the argument Password causes sql injection. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited.
Affected products
- Campcodes Hospital Management System: version 1.0 only
Published 2025-09-01. Last modified 2026-09-26.