VYPR
Medium severity6.5NVD Advisory· Published Feb 12, 2016· Updated May 6, 2026

CVE-2016-0881

CVE-2016-0881

Description

EMC Documentum xCP 2.1 before patch 23 and 2.2 before patch 11 allows remote authenticated users to conduct Documentum Query Language (DQL) injection attacks and obtain sensitive repository information by appending a query to a REST request.

Affected products

2
  • cpe:2.3:a:emc:documentum_xcp:2.1:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:emc:documentum_xcp:2.1:*:*:*:*:*:*:*
    • cpe:2.3:a:emc:documentum_xcp:2.2:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.