CVE-2024-25896
ChurchCRM 5.5.0 EventEditor.php is vulnerable to Blind SQL Injection (Time-based) via the EID POST parameter.
ChurchCRM 5.5.0 EventEditor.php is vulnerable to Blind SQL Injection (Time-based) via the EID POST parameter.
MEDIUM · CVSS 5.3
EPSS 0.00145
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0