CVE-2019-12872

Publication date

2019-06-18 13:20:44

Family

mitre

State

PUBLISHED

Description

dotCMS before 5.1.6 is vulnerable to a SQL injection that can be exploited by an attacker of the role Publisher via view_unpushed_bundles.jsp.