Medium severity6.5NVD Advisory· Published Feb 12, 2016· Updated May 6, 2026
CVE-2016-0881
CVE-2016-0881
Description
EMC Documentum xCP 2.1 before patch 23 and 2.2 before patch 11 allows remote authenticated users to conduct Documentum Query Language (DQL) injection attacks and obtain sensitive repository information by appending a query to a REST request.
Affected products
2cpe:2.3:a:emc:documentum_xcp:2.1:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:emc:documentum_xcp:2.1:*:*:*:*:*:*:*
- cpe:2.3:a:emc:documentum_xcp:2.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- seclists.org/bugtraq/2016/Feb/66nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1034993nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.