CVE-2025-1961: SourceCodester Best Church Management Software web_crud.php sql injection
A vulnerability has been found in SourceCodester Best Church Management Software 1.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/app/webcrud.php. The manipulation of the argument encryption leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1961?
CVE-2025-1961 is classified as a critical vulnerability.
What kind of vulnerability is CVE-2025-1961?
CVE-2025-1961 is an SQL injection vulnerability.
What software is affected by CVE-2025-1961?
CVE-2025-1961 affects SourceCodester Best Church Management Software version 1.1.
How does CVE-2025-1961 affect the application?
CVE-2025-1961 allows attackers to manipulate the 'encryption' argument in the web_crud.php file.
How do I fix CVE-2025-1961?
To fix CVE-2025-1961, update the SourceCodester Best Church Management Software to the latest version that addresses this vulnerability.