CVE-2024-23538
CVSS V2 None
CVSS V3 None
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Fineract.This issue affects Apache Fineract: <1.8.5.
Users are recommended to upgrade to version 1.8.5 or 1.9.0, which fix the issue.
Overview
- CVE ID
- CVE-2024-23538
- Assigner
- apache
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-03-29T14:37:40.374Z
- Last Modified Date
- 2024-03-29T14:37:40.374Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://cwiki.apache.org/confluence/display/FINERACT/Apache+Fineract+Security+Report | vendor-advisory |
https://lists.apache.org/thread/by32w2dylzgbqm5940x3wj7519wolqxs | vendor-advisory |
http://www.openwall.com/lists/oss-security/2024/03/29/2 |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-23538 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-23538 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-26 07:20:38 | Added to TrackCVE |