Vulnerability Database

314,432

Total vulnerabilities in the database

CVE-2023-25197

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Software Foundation apache fineract. Authorized users may be able to exploit this for limited impact on components.  

This issue affects apache fineract: from 1.4 through 1.8.2.

  • Published: Mar 28, 2023
  • Updated: Nov 16, 2025
  • CVE: CVE-2023-25197
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 6.3
  • AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

CWEs:

OWASP TOP 10: