cve/2024/CVE-2024-25897.md
2024-06-09 00:33:16 +00:00

635 B

CVE-2024-25897

Description

ChurchCRM 5.5.0 FRCatalog.php is vulnerable to Blind SQL Injection (Time-based) via the CurrentFundraiser GET parameter.

POC

Reference

Github

No PoCs found on GitHub currently.