CVE-2016-8902

CRITICAL

dotcms < 3.3 - Unauthenticated SQL Injection via CategoriesServlet Sort Parameter

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in the categoriesServlet servlet in dotCMS before 3.3.1 allows remote not authenticated attackers to execute arbitrary SQL commands via the sort parameter.

References (5)

Core 5
Core References
Patch, Vendor Advisory x_refsource_misc
https://github.com/dotCMS/core/pull/8460/
Technical Description, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/94311
Third Party Advisory x_refsource_misc
http://seclists.org/fulldisclosure/2016/Nov/0
Patch, Vendor Advisory x_refsource_misc
https://github.com/dotCMS/core/pull/8468/

Scores

CVSS v3 9.8
EPSS 0.0275
EPSS Percentile 84.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-89
Status published
Products (1)
dotcms/dotcms < 3.3
Published Nov 14, 2016
Tracked Since Feb 18, 2026