A vulnerability categorized as critical has been discovered in Campcodes Online Apartment Visitor Management System 1.0. Affected is an unknown function of the file /visitor-detail.php. The manipulation of the argument editid results in sql injection.

This vulnerability is identified as CVE-2025-11334. The attack can be executed remotely. Additionally, an exploit exists.