Description
dotCMS before 5.1.6 is vulnerable to a SQL injection that can be exploited by an attacker of the role Publisher via view_unpushed_bundles.jsp.
Remediation
References
Related Vulnerabilities
WordPress Plugin To Top Security Bypass (2.2.2)
WordPress Plugin Backup Migration Cross-Site Scripting (1.1.5)
OpenSSL Improper Input Validation Vulnerability (CVE-2008-5077)
Jboss EAP Uncontrolled Resource Consumption Vulnerability (CVE-2020-14384)
WordPress Plugin SPNbabble Cross-Site Request Forgery (1.4.1)