CVE-2016-9873

EMC Documentum D2 version 4.5 and EMC Documentum D2 version 4.6 has a DQL Injection Vulnerability that could potentially be exploited by malicious users to compromise the affected system. An authenticated low-privileged attacker could potentially exploit this vulnerability to access information, modify data or disrupt services by causing execution of arbitrary DQL commands on the application.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:emc:documentum_d2:4.6:*:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_d2:4.5:*:*:*:*:*:*:*

Information

Published : 2017-02-02 23:59

Updated : 2017-07-24 18:29


NVD link : CVE-2016-9873

Mitre link : CVE-2016-9873


JSON object : View

CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')

Advertisement

dedicated server usa

Products Affected

emc

  • documentum_d2