CVE-2018-11801: SQL Injection
SQL injection vulnerability in Apache Fineract before 1.3.0 allows attackers to execute arbitrary SQL commands via a query on a mcenter data related table.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-11801?
CVE-2018-11801 is a SQL injection vulnerability in Apache Fineract before version 1.3.0.
How severe is CVE-2018-11801?
CVE-2018-11801 has a severity rating of 9.8 (Critical).
How does CVE-2018-11801 affect Apache Fineract?
CVE-2018-11801 allows attackers to execute arbitrary SQL commands on a m_center data related table in Apache Fineract.
What is the recommended fix for CVE-2018-11801?
To fix CVE-2018-11801, it is recommended to upgrade to Apache Fineract version 1.3.0 or later.
Where can I find more information about CVE-2018-11801?
You can find more information about CVE-2018-11801 in the references provided: [1](http://www.openwall.com/lists/oss-security/2019/05/09/1) [2](http://www.securityfocus.com/bid/108291) [3](https://lists.apache.org/thread.html/32aa471180f8978b5f0ed64fcd862769f73c40bbe6cb948abdc899bf@%3Cdev.fineract.apache.org%3E)