First published: Sun Feb 23 2025(Updated: )
A vulnerability was found in SourceCodester Best Church Management Software 1.0. It has been classified as problematic. Affected is an unknown function of the file /admin/redirect.php. The manipulation of the argument a leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
SourceCodester Best Church Management Software | ||
Church Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-1597 has been classified as problematic due to its cross-site scripting vulnerability.
Fix CVE-2025-1597 by sanitizing user input in the affected /admin/redirect.php function to prevent cross-site scripting.
CVE-2025-1597 allows for cross-site scripting attacks which can lead to the execution of malicious scripts in the user's browser.
CVE-2025-1597 affects SourceCodester Best Church Management Software version 1.0.
The vulnerability CVE-2025-1597 is found in the /admin/redirect.php file of the affected software.