CVE-2023-29842 | ChurchCRM 4.5.4 POST Parameter /EditEventTypes.php EN_tyid sql injection
A vulnerability was found in ChurchCRM 4.5.4. It has been classified as critical. Affected is an unknown function of the file /EditEventTypes.php of the component POST Parameter Handler. The manipulation of the argument EN_tyid leads to sql injection.
This vulnerability is traded as CVE-2023-29842. It is possible to launch the attack remotely. There is no exploit available.