Description
ChurchCRM v4.5.3 and below was discovered to contain a SQL injection vulnerability via the Event parameter under the Event Attendance reports module.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-28695 | ChurchCRM v4.5.3 and below was discovered to contain a SQL injection vulnerability via the Event parameter under the Event Attendance reports module. |
References
History
Mon, 24 Mar 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-24T18:52:30.656Z
Reserved: 2023-01-30T00:00:00.000Z
Link: CVE-2023-24685
Updated: 2024-08-02T11:03:19.192Z
Status : Modified
Published: 2023-02-09T22:15:11.363
Modified: 2025-03-24T19:15:45.743
Link: CVE-2023-24685
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD