CVE-2016-11023: SQL Injection
Published Mar 30, 2020
·Updated
odata4j 0.7.0 allows ExecuteCountQueryCommand.java SQL injection. NOTE: this product is apparently discontinued.
Affected Software
1 affected component
Odata4j Project Odata4j=0.7
Event History
Mar 30, 2020
CVE Published
via MITRE·07:41 PM
Data Sourced
via MITRE·07:41 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-11023?
The severity of CVE-2016-11023 is classified as a high risk due to the potential for SQL injection attacks.
2
How do I fix CVE-2016-11023?
To fix CVE-2016-11023, it is recommended to upgrade to a later version or implement input validation to prevent SQL injection.
3
Which versions are affected by CVE-2016-11023?
CVE-2016-11023 affects version 0.7.0 of odata4j.
4
Is odata4j still supported after CVE-2016-11023?
Odata4j is apparently discontinued, which means no further support or patches are available following CVE-2016-11023.
5
What is the nature of the vulnerability in CVE-2016-11023?
CVE-2016-11023 is a SQL injection vulnerability that allows attackers to execute arbitrary SQL queries.