SQL Injection Vulnerability in categoriesServlet Servlet in dotCMS

SQL Injection Vulnerability in categoriesServlet Servlet in dotCMS

CVE-2016-8902 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

SQL injection vulnerability in the categoriesServlet servlet in dotCMS before 3.3.1 allows remote not authenticated attackers to execute arbitrary SQL commands via the sort parameter.

Learn more about our Cms Pen Testing.