CVE-2025-7833: code-projects Church Donation System giving.php sql injection
Published Jul 19, 2025
·Updated
A vulnerability, which was classified as critical, has been found in code-projects Church Donation System 1.0. This issue affects some unknown processing of the file /members/giving.php. The manipulation of the argument Amount leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Code-projects Church Donation System
Carmelo Church Donation System=1.0
Event History
Jul 19, 2025
CVE Published
via MITRE·03:44 PM
Data Sourced
via MITRE·03:44 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Jun 16, 58473
Event
via NVD·12:27 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-7833?
CVE-2025-7833 is classified as a critical vulnerability.
2
How does CVE-2025-7833 affect the Church Donation System?
CVE-2025-7833 affects the /members/giving.php file, leading to SQL injection via the Amount argument.
3
How do I fix CVE-2025-7833?
To fix CVE-2025-7833, sanitize and validate user input in the Amount parameter to prevent SQL injection.
4
Can CVE-2025-7833 be exploited remotely?
Yes, CVE-2025-7833 can be exploited remotely by an attacker.
5
Which versions of Church Donation System are affected by CVE-2025-7833?
CVE-2025-7833 affects version 1.0 of the Church Donation System.