IBM Web Content Manager XPath Injection
http://packetstormsecurity.com/files/124611/SA-20131227-0.txt
IBM Web Content Manager versions 6.x, 7.x, and 8.x suffer from blind XPath injection attacks. This allows an attacker to get current application configuration, enumerate nodes, and extract other valuable information from vulnerable installations of Web Content Manager.