Security Advisory

CVE-2019-12872

7.2
HIGH

Vulnerability Description

dotCMS before 5.1.6 is vulnerable to a SQL injection that can be exploited by an attacker of the role Publisher via view_unpushed_bundles.jsp.
Published Date June 18, 2019
Official Source NIST NVD Advisory