Description
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. This version of GeoServer is vulnerable to an SQL injection vulnerability.
Remediation
Upgrade to the latest version of GeoServer
References
GeoServer OGC Filter SQL Injection Vulnerabilities
GeoServer & GeoTools SQL Injection (CVE-2023-25157 & CVE-2023-25158)
Related Vulnerabilities
Zikula Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2014-2293)
Apache Tomcat Resource Management Errors Vulnerability (CVE-2011-0534)
Mailman Other Vulnerability (CVE-2002-0855)
MySQL CVE-2022-21362 Vulnerability (CVE-2022-21362)
Apache Struts Path traversal (S2-067/CVE-2024-53677, S2-066/CVE-2023-50164)