18 Avr 2016
CVE-2016-3688 Vulnerability
SQL injection vulnerability in dotCMS before 3.5 allows remote administrators to execute arbitrary SQL commands via the c0-e3 parameter to dwr/call/plaincall/UserAjax.getUsersList.dwr. (CVSS:4.0) (Last Update:2016-04-28)
Vulnerability Details : SQL injection vulnerability in dotCMS before 3.5 allows remote administrators to execute arbitrary SQL commands via the c0-e3 parameter to dwr/call/plaincall/UserAjax.getUsersList.dwr. Publish Date : 2016-04-19 Last Update Date : 2016-04-28 - CVSS Scores & Vulnerability Types
- Products Affected By CVE-2016-3688
- Number Of Affected Versions By Product
- References For CVE-2016-3688
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||
- Metasploit Modules Related To CVE-2016-3688There are not any metasploit modules related to this CVE entry (Please visit www.metasploit.com for more information) |