CVE

Id
95420  
CVE No.
CVE-2016-8600  
Status
Candidate  
Description
In dotCMS 3.2.1, attacker can load captcha once, fill it with correct value and then this correct value is ok for forms with captcha check later.  
Phase
Assigned (20161011)  
Votes
None (candidate not yet proposed)  
Comments