ID | CVE-2016-8905 | ||||||
Sažetak | SQL injection vulnerability in the JSONTags servlet in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the sort parameter. | ||||||
Reference | |||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:N/AC:L/Au:S/C:P/I:P/A:P | ||||||
Zadnje važnije ažuriranje | 29-11-2016 - 19:25 | ||||||
Objavljeno | 14-11-2016 - 23:20 |