Description
A cross-site request forgery (CSRF) vulnerability in ChurchCRM v4.5.3 allows attackers to change any user's password except for the user that is currently logged in.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-30633 | A cross-site request forgery (CSRF) vulnerability in ChurchCRM v4.5.3 allows attackers to change any user's password except for the user that is currently logged in. |
References
History
Mon, 03 Feb 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-03T21:16:18.000Z
Reserved: 2023-02-27T00:00:00.000Z
Link: CVE-2023-26841
Updated: 2024-08-02T11:53:54.593Z
Status : Modified
Published: 2023-04-25T13:15:10.027
Modified: 2025-02-03T22:15:26.607
Link: CVE-2023-26841
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD