CVE-2017-14758 | Opentext Document Sciences xPression up to 4.5SP1 Patch 13 cm_doclist_view_uc.jsp documentId sql injection (EDB-42939)
A vulnerability, which was classified as critical, has been found in Opentext Document Sciences xPression up to 4.5SP1 Patch 13. This issue affects some unknown processing of the file /xAdmin/html/cm_doclist_view_uc.jsp. The manipulation of the argument documentId leads to sql injection.
The identification of this vulnerability is CVE-2017-14758. The attack may be initiated remotely. Furthermore, there is an exploit available.