CVE-2025-7929: code-projects Church Donation System edit_Members.php sql injection
A vulnerability was found in code-projects Church Donation System 1.0. It has been classified as critical. Affected is an unknown function of the file /members/editMembers.php. The manipulation of the argument fname leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7929?
CVE-2025-7929 has been classified as critical due to the potential for SQL injection.
How do I fix CVE-2025-7929?
To fix CVE-2025-7929, sanitize user inputs and implement prepared statements to prevent SQL injection.
Which component is affected by CVE-2025-7929?
CVE-2025-7929 affects the /members/edit_Members.php function in the Church Donation System.
What kind of attack can be executed through CVE-2025-7929?
CVE-2025-7929 allows for remote SQL injection attacks that could compromise the database.
Which product is impacted by CVE-2025-7929?
CVE-2025-7929 impacts the Code-projects Church Donation System version 1.0.