Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
church management system project church management system 1.0 vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2022-2680
A vulnerability classified as critical has been found in SourceCodester Church Management System 1.0. Affected is an unknown function of the file /login.php. The manipulation of the argument username with the input ' OR (SELECT 7064 FROM(SELECT COUNT(*),CONCAT(0x71627a7671,(...
Church Management System Project Church Management System 1.0
9.8
CVSSv3
CVE-2021-41661
Church Management System version 1.0 is affected by a SQL anjection vulnerability through creating a user with a PHP file as an avatar image, which is accessible through the /uploads directory. This can lead to RCE on the web server by uploading a PHP webshell.
Church Management System Project Church Management System 1.0
7.2
CVSSv3
CVE-2022-38594
Church Management System v1.0 exists to contain a SQL injection vulnerability via the id parameter at /admin/edit_visitor.php.
Church Management System Project Church Management System 1.0
7.2
CVSSv3
CVE-2022-38605
Church Management System v1.0 exists to contain a SQL injection vulnerability via the id parameter at /admin/edit_event.php.
Church Management System Project Church Management System 1.0
7.2
CVSSv3
CVE-2022-45328
Church Management System v1.0 exists to contain a SQL injection vulnerability via the id parameter at /admin/edit_members.php.
Church Management System Project Church Management System 1.0
9.8
CVSSv3
CVE-2021-41643
Remote Code Execution (RCE) vulnerability exists in Sourcecodester Church Management System 1.0 via the image upload field.
Church Management System Project Church Management System 1.0
7.2
CVSSv3
CVE-2022-41406
An arbitrary file upload vulnerability in the /admin/admin_pic.php component of Church Management System v1.0 allows malicious users to execute arbitrary code via a crafted PHP file.
Church Management System Project Church Management System 1.0
7.2
CVSSv3
CVE-2022-38595
Church Management System v1.0 exists to contain a SQL injection vulnerability via the id parameter at /admin/edit_user.php.
Church Management System Project Church Management System 1.0
9.8
CVSSv3
CVE-2022-1084
A vulnerability classified as critical was found in SourceCodester One Church Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /one_church/userregister.php. The manipulation leads to authentication bypass. The attack can be launched re...
One Church Management System Project One Church Management System 1.0
6.1
CVSSv3
CVE-2022-1079
A vulnerability classified as problematic has been found in SourceCodester One Church Management System. Affected are multiple files and parameters which are prone to to cross site scripting. It is possible to launch the attack remotely.
One Church Management System Project One Church Management System 1.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-29895
inject
CVE-2023-52689
CVE-2024-5049
CVE-2024-5051
privilege escalation
physical
CVE-2023-52676
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »