HIGH
dotCMS 1.9 before 1.9.5.1 allows remote authenticated users to execute arbitrary Java code via a crafted (1) XSLT or (2) Velocity template
Published Jun 8, 2012
8.7
HIGHCVSS 4.0
EPSS 2.19%
Description
dotCMS 1.9 before 1.9.5.1 allows remote authenticated users to execute arbitrary Java code via a crafted (1) XSLT or (2) Velocity template.
Affected products
Remediation
No remediation recorded yet.
Metrics
8.7 HIGH GHSA
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Attack Vector Network
Attack Complexity Low
Attack Requirements None
Privileges Required Low
User Interaction None
Vulnerable System Confidentiality High
Vulnerable System Integrity High
Vulnerable System Availability High
Subsequent System Confidentiality None
Subsequent System Integrity None
Subsequent System Availability None
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
6.0 MEDIUM NVD
AV:N/AC:M/Au:S/C:P/I:P/A:P
Access Vector Network
Access Complexity Medium
Authentication Single
Confidentiality Impact Partial
Integrity Impact Partial
Availability Impact Partial
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
2.19% 0.02190
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
EPSS probability 0.02190
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (10 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 2.19% (0.02190) | 81.77th | v5 (v2026.06.15) |
| Jun 15, 2026 | 2.19% (0.02190) | 80.02th | v5 (v2026.06.15) |
| Mar 17, 2025 | 1.01% (0.01010) | 75.55th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.49% (0.00489) | 76.88th | v3 (v2023.03.01) |
| Feb 8, 2024 | 0.49% (0.00489) | 75.39th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.49% (0.00489) | 72.38th | v3 (v2023.03.01) |
| Mar 6, 2023 | 1.31% (0.01315) | 68.50th | v2 (v2022.01.01) |
| Feb 22, 2023 | 1.31% (0.01315) | 68.21th | v2 (v2022.01.01) |
| Apr 1, 2022 | 1.31% (0.01315) | 66.08th | v2 (v2022.01.01) |
| Feb 4, 2022 | 1.31% (0.01315) | 41.88th | v2 (v2022.01.01) |
Weaknesses (1)
References (12)
- http://dotcms.com/dotCMSVersions x_refsource_CONFIRM
- http://osvdb.org/82240 vdb-entryx_refsource_OSVDB
- http://secunia.com/advisories/49276 third-party-advisoryx_refsource_SECUNIA
- http://www.kb.cert.org/vuls/id/898083 third-party-advisoryx_refsource_CERT-VNUS Government Resource
- http://www.securityfocus.com/bid/53688 vdb-entryx_refsource_BID
- https://gist.github.com/2627440 x_refsource_CONFIRM
- https://github.com/advisories/GHSA-42vg-q6mw-cfh5 Advisory
- https://github.com/dotCMS/dotCMS/issues/261 x_refsource_CONFIRM
- https://github.com/dotCMS/dotCMS/issues/281 x_refsource_CONFIRM
- https://nvd.nist.gov/vuln/detail/CVE-2012-1826
- https://web.archive.org/web/20201208044614/https://gist.github.com/jtesser/2627440
- https://web.archive.org/web/20210124000108/https://www.securityfocus.com/bid/53688
| Link | Providers | Tags |
|---|---|---|
| http://dotcms.com/dotCMSVersions | x_refsource_CONFIRM | |
| http://osvdb.org/82240 | vdb-entryx_refsource_OSVDB | |
| http://secunia.com/advisories/49276 | third-party-advisoryx_refsource_SECUNIA | |
| http://www.kb.cert.org/vuls/id/898083 | third-party-advisoryx_refsource_CERT-VNUS Government Resource | |
| http://www.securityfocus.com/bid/53688 | vdb-entryx_refsource_BID | |
| https://gist.github.com/2627440 | x_refsource_CONFIRM | |
| https://github.com/advisories/GHSA-42vg-q6mw-cfh5 | Advisory | |
| https://github.com/dotCMS/dotCMS/issues/261 | x_refsource_CONFIRM | |
| https://github.com/dotCMS/dotCMS/issues/281 | x_refsource_CONFIRM | |
| https://nvd.nist.gov/vuln/detail/CVE-2012-1826 | ||
| https://web.archive.org/web/20201208044614/https://gist.github.com/jtesser/2627440 | ||
| https://web.archive.org/web/20210124000108/https://www.securityfocus.com/bid/53688 |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner certcc
Published Jun 8, 2012
Updated Aug 6, 2024
Reserved Mar 21, 2012
Link CVE-2012-1826
CISA Vulnrichment
GHSA-42VG-Q6MW-CFH5 Updated n/a