First published: Thu Jan 16 2025(Updated: )
JFinalOA before v2025.01.01 was discovered to contain a SQL injection vulnerability via the component apply/save#oaContractApply.id.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
JFinalOA | <2025-01-01 | |
JFinalOA | <2025.01.01 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-57770 is classified as a high severity SQL injection vulnerability affecting JFinalOA before version 2025.01.01.
To fix CVE-2024-57770, update JFinalOA to version 2025.01.01 or later.
CVE-2024-57770 specifically affects the apply/save#oaContractApply.id component of JFinalOA.
CVE-2024-57770 is a SQL injection vulnerability that allows attackers to manipulate database queries.
Yes, CVE-2024-57770 requires immediate attention due to its potential for data exposure and manipulation.