Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-25196


Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Software Foundation Apache Fineract. Authorized users may be able to change or add data in certain components.   This issue affects Apache Fineract: from 1.4 through 1.8.2.


Published

2023-03-28T12:15:07.360

Last Modified

2024-11-21T07:49:17.793

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.3 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-89
  • Type: Primary
    CWE-89

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application apache fineract ≤ 1.8.2 Yes

References