EMC Documentum xCP 2.1 before patch 23 and 2.2 before patch 11 allows remote authenticated users to conduct Documentum Query Language (DQL) injection attacks and obtain sensitive repository information by appending a query to a REST request.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2016-0892 | EMC Documentum xCP 2.1 before patch 23 and 2.2 before patch 11 allows remote authenticated users to conduct Documentum Query Language (DQL) injection attacks and obtain sensitive repository information by appending a query to a REST request. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-08-05T22:30:05.175Z
Reserved: 2015-12-17T00:00:00
Link: CVE-2016-0881
No data.
Status : Deferred
Published: 2016-02-12T01:59:00.113
Modified: 2025-04-12T10:46:40.837
Link: CVE-2016-0881
No data.
OpenCVE Enrichment
No data.
EUVD