CVE-2022-31325 | ChurchCRM 4.4.5 WhyCameEditor.php PersonID sql injection (Issue 6005 / EDB-50965)
A vulnerability was found in ChurchCRM 4.4.5 and classified as critical. This issue affects some unknown processing of the file /churchcrm/WhyCameEditor.php. The manipulation of the argument PersonID leads to sql injection.
The identification of this vulnerability is CVE-2022-31325. The attack may be initiated remotely. Furthermore, there is an exploit available.