Vulnerability CVE-2023-38768


Published: 2023-08-08

Description:
SQL injection vulnerability in ChurchCRM v.5.0.0 allows a remote attacker to obtain sensitive information via the PropertyID parameter within the /QueryView.php.

 References:
https://github.com/0x72303074/CVE-Disclosures
https://demo.churchcrm.io/master
https://churchcrm.io/
https://github.com/ChurchCRM/CRM/wiki

Copyright 2026, cxsecurity.com

 

Back to Top