Critical
CVSS 9.8
Overview
SQL injection vulnerability in the REST API in dotCMS before 3.3.2 allows remote attackers to execute arbitrary SQL commands via the stName parameter to api/content/save/1.
SQL injection vulnerability in the REST API in dotCMS before 3.3.2 allows remote...
SQL injection vulnerability in the REST API in dotCMS before 3.3.2 allows remote attackers to execute arbitrary SQL commands via the stName parameter to api/content/save/1.
This vulnerability is rated 🔴 CRITICAL.
Recommended actions: