cve/2016/CVE-2016-2355.md
2024-05-26 14:27:05 +02:00

619 B

CVE-2016-2355

Description

SQL injection vulnerability in the REST API in dotCMS before 3.3.2 allows remote attackers to execute arbitrary SQL commands via the stName parameter to api/content/save/1.

POC

Reference

No PoCs from references.

Github