diff --git a/exploits/php/webapps/51397.txt b/exploits/php/webapps/51397.txt index ece0809c1..851263e92 100644 --- a/exploits/php/webapps/51397.txt +++ b/exploits/php/webapps/51397.txt @@ -1,9 +1,9 @@ -# Exploit Title: ChurchCRM 4.5.1 - Authenticated SQL Injection +# Exploit Title: ChurchCRM 4.5.3 - Authenticated SQL Injection # Date: 27-04-2023 # Exploit Author: Iyaad Luqman K # Software Link: https://github.com/ChurchCRM/CRM/releases # Vendor Homepage: http://churchcrm.io/ -# Version: 4.5.1 +# Tested Version: 4.5.1 # Tested on: Windows, Linux # CVE: CVE-2023-24685 diff --git a/files_exploits.csv b/files_exploits.csv index 4e3c14b85..9aed6c7c3 100644 --- a/files_exploits.csv +++ b/files_exploits.csv @@ -15497,7 +15497,7 @@ id,file,description,date_published,author,type,platform,port,date_added,date_upd 50116,exploits/php/webapps/50116.py,"Church Management System 1.0 - SQL Injection (Authentication Bypass) + Arbitrary File Upload + RCE",2021-07-09,"Eleonora Guardini",webapps,php,,2021-07-09,2021-07-09,0,,,,,, 50965,exploits/php/webapps/50965.txt,"ChurchCRM 4.4.5 - SQLi",2022-06-14,nu11secur1ty,webapps,php,,2022-06-14,2022-06-14,0,CVE-2022-31325,,,,, 51319,exploits/php/webapps/51319.py,"ChurchCRM 4.5.1 - Authenticated SQL Injection",2023-04-07,Arvandy,webapps,php,,2023-04-07,2023-04-07,0,CVE-2023-24787,,,,, -51397,exploits/php/webapps/51397.txt,"ChurchCRM v4.5.1 - Authenticated SQL Injection",2023-04-27,"Iyaad Luqman K",webapps,php,,2023-04-27,2023-04-27,1,CVE-2023-24685,,,,, +51397,exploits/php/webapps/51397.txt,"ChurchCRM v4.5.3 - Authenticated SQL Injection",2023-04-27,"Iyaad Luqman K",webapps,php,,2023-04-27,2023-05-07,1,CVE-2023-24685,,,,, 51296,exploits/php/webapps/51296.txt,"ChurchCRM v4.5.3-121fcc1 - SQL Injection",2023-04-06,nu11secur1ty,webapps,php,,2023-04-06,2023-04-06,0,,,,,, 15887,exploits/php/webapps/15887.txt,"ChurchInfo 1.2.12 - SQL Injection",2011-01-01,dun,webapps,php,,2011-01-01,2011-01-01,1,OSVDB-70253,,,,http://www.exploit-db.comchurchinfo-1.2.12.zip, 36874,exploits/php/webapps/36874.txt,"Chyrp 2.1.1 - 'ajax.php' HTML Injection",2012-02-22,"High-Tech Bridge SA",webapps,php,,2012-02-22,2015-05-01,1,CVE-2012-1001;OSVDB-79456,,,,,https://www.securityfocus.com/bid/52115/info