A vulnerability categorized as critical has been discovered in Campcodes Advanced Online Voting Management System 1.0. The impacted element is an unknown function of the file /admin/login.php. Such manipulation of the argument Username leads to sql injection.

This vulnerability is documented as CVE-2025-11422. The attack can be executed remotely. Additionally, an exploit exists.