CVE-2025-3323

Source
https://cve.org/CVERecord?id=CVE-2025-3323
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-3323.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-3323
Published
2025-04-06T22:00:13.229Z
Modified
2026-08-28T11:46:47.471459794Z
Severity
  • 2.1 (Low) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P CVSS Calculator
Summary
godcheese/code-projects Nimrod ViewMenuCategoryRestController.java searchAllByName sql injection
Details

A vulnerability classified as critical was found in godcheese/code-projects Nimrod 0.8. Affected by this vulnerability is the function searchAllByName of the file ViewMenuCategoryRestController.java. The manipulation of the argument Name leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

Database specific
{
    "cna_assigner": "VulDB",
    "unresolved_ranges": [
        {
            "source": "AFFECTED_FIELD",
            "extracted_events": [
                {
                    "introduced": "0.8"
                },
                {
                    "last_affected": "0.8"
                },
                {
                    "introduced": "0.8"
                },
                {
                    "last_affected": "0.8"
                }
            ]
        }
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/3xxx/CVE-2025-3323.json",
    "cwe_ids": [
        "CWE-74",
        "CWE-89"
    ]
}
References

Affected packages

Git / github.com/godcheese/nimrod

Affected ranges

Type
GIT
Repo
https://github.com/godcheese/nimrod
Events
Database specific
Show details
{
    "source": "CPE_STRING",
    "cpe": "cpe:2.3:a:godcheese:nimrod:0.8:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "0.8"
        },
        {
            "last_affected": "0.8"
        }
    ]
}

Affected versions

0.*
0.8
v0.*
v0.8.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-3323.json"