CVE-2016-8600

Publication date

2016-10-28 15:00:00

Family

mitre

State

PUBLISHED

Description

In dotCMS 3.2.1, attacker can load captcha once, fill it with correct value and then this correct value is ok for forms with captcha check later.