Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c5qf-27g2-c9p4

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The thumbnail proxy server in EMC Documentum Digital Asset Manager (DAM) 6.5 SP3, 6.5 SP4, 6.5 SP5, and 6.5 SP6 before P13 allows remote attackers to conduct Documentum Query Language (DQL) injection attacks and bypass intended restrictions on querying objects via a crafted parameter in a query string.

The thumbnail proxy server in EMC Documentum Digital Asset Manager (DAM) 6.5 SP3, 6.5 SP4, 6.5 SP5, and 6.5 SP6 before P13 allows remote attackers to conduct Documentum Query Language (DQL) injection attacks and bypass intended restrictions on querying objects via a crafted parameter in a query string.

EPSS

Процентиль: 57%
0.00349
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
больше 11 лет назад

The thumbnail proxy server in EMC Documentum Digital Asset Manager (DAM) 6.5 SP3, 6.5 SP4, 6.5 SP5, and 6.5 SP6 before P13 allows remote attackers to conduct Documentum Query Language (DQL) injection attacks and bypass intended restrictions on querying objects via a crafted parameter in a query string.

EPSS

Процентиль: 57%
0.00349
Низкий

Дефекты

CWE-20