CVE-2016-5653
MEDIUMMisys FusionCapital Opics Plus - SQL Injection
Title source: llmDescription
Multiple SQL injection vulnerabilities in Misys FusionCapital Opics Plus allow remote authenticated users to execute arbitrary SQL commands via the (1) ID or (2) Branch parameter.
Scores
CVSS v3
6.5
EPSS
0.0029
EPSS Percentile
52.4%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Classification
CWE
CWE-89
Status
draft
Affected Products (1)
misys/fusioncapital_opics_plus
Timeline
Published
Jul 19, 2016
Tracked Since
Feb 18, 2026