cve/2016/CVE-2016-8902.md
2024-06-18 02:51:15 +02:00

757 B

CVE-2016-8902

Description

SQL injection vulnerability in the categoriesServlet servlet in dotCMS before 3.3.1 allows remote not authenticated attackers to execute arbitrary SQL commands via the sort parameter.

POC

Reference

Github

No PoCs found on GitHub currently.