Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9xq3-jc6p-w638

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

EMC Documentum D2 version 4.5 and EMC Documentum D2 version 4.6 has a DQL Injection Vulnerability that could potentially be exploited by malicious users to compromise the affected system. An authenticated low-privileged attacker could potentially exploit this vulnerability to access information, modify data or disrupt services by causing execution of arbitrary DQL commands on the application.

EMC Documentum D2 version 4.5 and EMC Documentum D2 version 4.6 has a DQL Injection Vulnerability that could potentially be exploited by malicious users to compromise the affected system. An authenticated low-privileged attacker could potentially exploit this vulnerability to access information, modify data or disrupt services by causing execution of arbitrary DQL commands on the application.

EPSS

Процентиль: 69%
0.00586
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 6.3
nvd
около 9 лет назад

EMC Documentum D2 version 4.5 and EMC Documentum D2 version 4.6 has a DQL Injection Vulnerability that could potentially be exploited by malicious users to compromise the affected system. An authenticated low-privileged attacker could potentially exploit this vulnerability to access information, modify data or disrupt services by causing execution of arbitrary DQL commands on the application.

EPSS

Процентиль: 69%
0.00586
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-77