CVE-2023-26840
A cross-site request forgery (CSRF) vulnerability in ChurchCRM v4.5.3 allows attackers to set a person to a user and set
A cross-site request forgery (CSRF) vulnerability in ChurchCRM v4.5.3 allows attackers to set a person to a user and set that user to be an Administrator.
MEDIUM · CVSS 5.3
EPSS 0.00114
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0