CVE-2016-2355
19.12.2016, 22:59
SQL injection vulnerability in the REST API in dotCMS before 3.3.2 allows remote attackers to execute arbitrary SQL commands via the stName parameter to api/content/save/1.
Vendor | Product | Version |
---|---|---|
dotcms | dotcms | 𝑥 ≤ 3.3.1 |
𝑥
= Vulnerable software versions