SQL Injection Vulnerability in Church Donation System by Code-Projects
CVE-2025-7860
7.3HIGH
What is CVE-2025-7860?
A SQL injection vulnerability has been identified in the Church Donation System 1.0, specifically in the processing of the login_admin.php file. This vulnerability allows attackers to manipulate input in the Username argument to execute arbitrary SQL queries. The attack can be initiated remotely, posing a significant risk to data integrity and system security. Given that the exploit has been disclosed, immediate action is recommended for users of the affected product to mitigate potential attacks.