Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-9873

Опубликовано: 03 фев. 2017
Источник: nvd
CVSS3: 6.3
CVSS2: 6.5
EPSS Низкий

Описание

EMC Documentum D2 version 4.5 and EMC Documentum D2 version 4.6 has a DQL Injection Vulnerability that could potentially be exploited by malicious users to compromise the affected system. An authenticated low-privileged attacker could potentially exploit this vulnerability to access information, modify data or disrupt services by causing execution of arbitrary DQL commands on the application.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:emc:documentum_d2:4.5:*:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_d2:4.6:*:*:*:*:*:*:*

EPSS

Процентиль: 69%
0.00586
Низкий

6.3 Medium

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 6.3
github
больше 3 лет назад

EMC Documentum D2 version 4.5 and EMC Documentum D2 version 4.6 has a DQL Injection Vulnerability that could potentially be exploited by malicious users to compromise the affected system. An authenticated low-privileged attacker could potentially exploit this vulnerability to access information, modify data or disrupt services by causing execution of arbitrary DQL commands on the application.

EPSS

Процентиль: 69%
0.00586
Низкий

6.3 Medium

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-77