First published: Wed Feb 12 2025(Updated: )
A vulnerability was found in SourceCodester Best Church Management Software 1.1. It has been rated as critical. This issue affects some unknown processing of the file /admin/app/profile_crud.php. The manipulation leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. Multiple parameters might be affected.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
SourceCodester Best Church Management Software | ||
Church Management System | =1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-1201 is rated as critical due to its potential for SQL injection.
CVE-2025-1201 allows for remote SQL injection through the file /admin/app/profile_crud.php.
To mitigate CVE-2025-1201, validate and sanitize all user inputs to prevent SQL injection.
Yes, CVE-2025-1201 can be exploited remotely.
CVE-2025-1201 affects SourceCodester Best Church Management Software version 1.1.