An issue in Horizon Business Services Inc. Caterease 16.0.1.1663 through 24.0.1.2405 and possibly later versions, allows a remote attacker to perform SQL Injection due to improper neutralization of special elements used in an SQL command.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 10 Sep 2024 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-89 | |
| CPEs | cpe:2.3:a:horizoncloud:caterease:*:*:*:*:*:*:*:* |
Thu, 08 Aug 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-78 | |
| Metrics |
cvssV3_1
|
Wed, 07 Aug 2024 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-08T14:20:28.367Z
Reserved: 2024-06-21T00:00:00
Link: CVE-2024-38889
Updated: 2024-08-03T18:25:45.819Z
Status : Analyzed
Published: 2024-08-02T20:17:00.407
Modified: 2026-02-20T20:39:49.977
Link: CVE-2024-38889
No data.
OpenCVE Enrichment
No data.