CVE-2024-3535: Campcodes Church Management System index.php sql injection
A vulnerability, which was classified as critical, was found in Campcodes Church Management System 1.0. This affects an unknown part of the file /admin/index.php. The manipulation of the argument password leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-259905 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-3535?
CVE-2024-3535 is classified as a critical vulnerability.
How do I fix CVE-2024-3535?
To remediate CVE-2024-3535, update the Campcodes Church Management System to the latest version that addresses this SQL injection vulnerability.
What component is affected by CVE-2024-3535?
CVE-2024-3535 affects the /admin/index.php file of the Campcodes Church Management System.
What type of attack can exploit CVE-2024-3535?
CVE-2024-3535 can be exploited through a remote SQL injection attack.
Who is the vendor of the software affected by CVE-2024-3535?
The vendor of the software affected by CVE-2024-3535 is Campcodes.