1. About CVE-2022-44635

Vulnerability Name Apache Fineract File Upload Vulnerability
Attack Type Arbitrary File Upload
Time Discovered 2022-12-01
Updated Time 2022-12-01
CVE ID CVE-2022-44635

2. Summary

This vulnerability exists in the file upload component of Apache Fine. Due to improper handling of the upload path, there is a directory traversal problem. An authenticated attacker can use this vulnerability to upload malicious files on a remote server, execute remote code execution attacks, and finally obtain the highest privileges of the server.

3. Affected Versions

Apache Fineract ≤ 1.8.0

4. Solution

Currently, the vendor had issued a security patch to fix the vulnerability. The official link is as follows: https://fineract.apache.org

Listen To This Post

Search

Related Articles

Beyond the Breach: How Education Data Becomes Trust Context for Social Engineering

Date : 09 Jun 2026
Read Now

Linux Cryptojacking Could be Secretly Draining Your Server Resources

Date : 26 May 2026
Read Now

GoldFactory Targets Vietnam and Thailand with Mobile Banking Fraud

Date : 12 May 2026
Read Now

See Other Product

Athena SASE - Secure Access Service Edge
Sangfor Athena NGFW - Next Generation Firewall
Sangfor Athena EPP - Modern Endpoint Protection Platform
Sangfor Athena NDR - Network Detection and Response
Cyber Command - NDR Platform
MDR TCO Calculator - User Input Page