CVE-2016-9873: Command Injection
EMC Documentum D2 version 4.5 and EMC Documentum D2 version 4.6 has a DQL Injection Vulnerability that could potentially be exploited by malicious users to compromise the affected system. An authenticated low-privileged attacker could potentially exploit this vulnerability to access information, modify data or disrupt services by causing execution of arbitrary DQL commands on the application.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-9873?
CVE-2016-9873 is classified as a high severity vulnerability due to its potential for exploitation by low-privileged authenticated attackers.
How do I fix CVE-2016-9873?
To fix CVE-2016-9873, it is recommended to update EMC Documentum D2 to versions 4.5.1 or 4.6.1, which address the DQL Injection vulnerability.
Who is affected by CVE-2016-9873?
CVE-2016-9873 affects users of EMC Documentum D2 versions 4.5 and 4.6.
What kind of attack can exploit CVE-2016-9873?
CVE-2016-9873 can be exploited through DQL Injection attacks, allowing attackers to access confidential information.
What are the potential impacts of CVE-2016-9873?
The potential impacts of CVE-2016-9873 include unauthorized access to sensitive data and possible system compromise.