Looking for the vulnerability index of Invicti's legacy products?
Dot CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-8600) - Vulnerability Database

Dot CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-8600)

Description

In dotCMS 3.2.1, attacker can load captcha once, fill it with correct value and then this correct value is ok for forms with captcha check later.

References

Related Vulnerabilities