Apache.Fineract.ImagesApiResource.Arbitrary.File.Upload

description-logoDescription

This indicates an attack attempt to exploit an Arbitrary File Upload Vulnerability in Apache Software Foundation Fineract.
The vulnerability is due to insufficient sanitation of paths during file uploads. A remote, authenticated attacker could exploit this vulnerability by sending crafted requests to the target server. Successful exploitation could lead to code execution in the context of the server process.

affected-products-logoAffected Products

Apache Software Foundation Fineract prior to 1.8.1

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Apply the most recent upgrade or patch from the vendor.
https://lists.apache.org/thread/t8q6fmh3o6yqmy69qtqxppk9yg9wfybg

Version Updates

Date Version Detail
2023-02-28 0.00342

CVE References

CVE-2022-44635