CVE-2016-8905

HIGH

dotcms < 3.3 - Authenticated SQL Injection via JSONTags Servlet Sort Parameter

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in the JSONTags servlet in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the sort parameter.

References (5)

Core 5
Core References
Patch, Vendor Advisory x_refsource_misc
https://github.com/dotCMS/core/pull/8460/
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/94311
Exploit, Third Party Advisory x_refsource_misc
http://seclists.org/fulldisclosure/2016/Nov/0
Patch, Vendor Advisory x_refsource_misc
https://github.com/dotCMS/core/pull/8468/

Scores

CVSS v3 8.8
EPSS 0.0199
EPSS Percentile 78.6%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-89
Status published
Products (1)
dotcms/dotcms < 3.3
Published Nov 14, 2016
Tracked Since Feb 18, 2026