An issue in Horizon Business Services Inc. Caterease 16.0.1.1663 through 24.0.1.2405 and possibly later versions, allows a remote attacker to perform SQL Injection due to improper neutralization of special elements used in an SQL command.
Metrics
Affected Vendors & Products
References
History
Tue, 10 Sep 2024 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-89 | |
CPEs | cpe:2.3:a:horizoncloud:caterease:*:*:*:*:*:*:*:* |
Thu, 08 Aug 2024 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-78 | |
Metrics |
cvssV3_1
|
Wed, 07 Aug 2024 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-08-02T00:00:00
Updated: 2024-08-08T14:20:28.367Z
Reserved: 2024-06-21T00:00:00
Link: CVE-2024-38889
Vulnrichment
Updated: 2024-08-03T18:25:45.819Z
NVD
Status : Analyzed
Published: 2024-08-02T20:17:00.407
Modified: 2024-09-10T16:38:10.517
Link: CVE-2024-38889
Redhat
No data.