Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Campcodes

First CVE: Apr 14, 2023Active for: 3 yearsTotal CVEs: 575
47.7
VTI Score
High

Campcodes develops a suite of web-based management and transaction systems spanning school administration, inventory, recruitment, and service-industry operations, a portfolio that exposes a broad range of customer-facing and administrative interfaces. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and concentrate in input-handling and code-generation weaknesses endemic to web applications: SQL injection, cross-site scripting, injection flaws, unsafe file uploads, and code injection. These weakness classes recur across the vendor's product line and reflect fundamental validation and sanitization gaps that can enable unauthorized data access, session hijacking, and remote code execution in education, retail, and staffing environments where these systems manage sensitive records and transactions. Defenders should treat Campcodes advisories as high-priority for any deployed instances and emphasize input validation hardening and web application firewall protections. Current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
575
Total CVEs
More Total CVEs than 100% of tracked vendors
2.2
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 90% of tracked vendors
8.3
Avg CVSS Score
Higher Avg CVSS Score than 81% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Campcodes over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 14, 2023
3 years ago
Most Recent CVE
Jan 5, 2026
200 days ago

Products(65 total)

Top CVEs

Signals from CVEs in this vendor scope (575 CVEs).

575 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2025-9744CRITICAL
A weakness has been identified in Campcodes Online Loan Management System 1.0. The affected element is an unknown function of the file /ajax.php?action=login. Executing manipulatio
Aug 31, 20259.843NOYES
CVE-2023-39115CRITICAL
install/aiz-uploader/upload in Campcodes Online Matrimonial Website System Script 3.3 allows XSS via a crafted SVG document.
Aug 16, 20239.839NOYES
CVE-2025-5298CRITICAL
A vulnerability, which was classified as critical, was found in Campcodes Online Hospital Management System 1.0. Affected is an unknown function of the file /admin/betweendates-det
May 28, 20259.838NOYES
CVE-2025-15207CRITICAL
A vulnerability has been found in Campcodes Supplier Management System 1.0. Affected is an unknown function of the file /admin/view_products.php. The manipulation of the argument c
Dec 29, 20259.834NONO
CVE-2025-14952CRITICAL
A vulnerability was detected in Campcodes Supplier Management System 1.0. This affects an unknown function of the file /admin/add_category.php. Performing a manipulation of the arg
Dec 19, 20259.834NONO
CVE-2025-14877CRITICAL
A vulnerability was identified in Campcodes Supplier Management System 1.0. This affects an unknown function of the file /admin/add_retailer.php. The manipulation of the argument c
Dec 18, 20259.834NONO
CVE-2025-13557CRITICAL
A vulnerability has been found in Campcodes Online Polling System 1.0. Affected by this issue is some unknown functionality of the file /registeracc.php. The manipulation of the ar
Nov 23, 20259.834NONO
CVE-2025-13411CRITICAL
A vulnerability was found in Campcodes Retro Basketball Shoes Online Store 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/admin_football.php. Pe
Nov 19, 20259.834NONO
CVE-2025-13291CRITICAL
A vulnerability was found in Campcodes Supplier Management System 1.0. This affects an unknown part of the file /manufacturer/confirm_order.php. Performing a manipulation of the ar
Nov 17, 20259.834NONO
CVE-2025-11595CRITICAL
A vulnerability was found in Campcodes Online Apartment Visitor Management System 1.0. Impacted is an unknown function of the file /admin-profile.php. Performing a manipulation of
Oct 11, 20259.834NONO
View all 575 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products575 CVEs
33%
18%
49%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local2 (0.3%)
Network573 (99.7%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low573 (99.7%)
High2 (0.3%)
Unknown0 (0.0%)
User Interaction
None449 (78.1%)
Unknown0 (0.0%)
Required126 (21.9%)
Privileges Required
Low149 (25.9%)
High21 (3.7%)
None405 (70.4%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (575 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
0.2% of CVEs· 95th percentile
ExploitDB
2 CVEs
0.3% of CVEs· 74th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Campcodes.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Campcodes — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Campcodes's Products

View all 2 CNAs →

Top CWEs