CVE Published: 28/03/2023 |
CVE Updated: 23/10/2024 |
CVE Year: 2023 Source: apache |
Vendor: Apache Software Foundation |
Product: apache fineract Status : PUBLISHED
CVE-2023-25197 Description
Improper Neutralization of Special Elements used in an SQL Command (\'SQL Injection\') vulnerability in Apache Software Foundation apache fineract.
Authorized users may be able to exploit this for limited impact on components.
This issue affects apache fineract: from 1.4 through 1.8.2.
CWE-ID: CWE-89 CWE Name: CWE-89 Improper Neutralization of Special Elements used in an SQL Command (
SQL Injection
) Source: Apache Software Foundation
Common Attack Pattern Enumeration and Classification (CAPEC)