Vulnerability Name: | CVE-2014-0642 (CCN-92403) | ||||||||
Assigned: | 2014-04-14 | ||||||||
Published: | 2014-04-14 | ||||||||
Updated: | 2014-04-16 | ||||||||
Summary: | EMC Documentum Content Server before 6.7 SP1 P26, 6.7 SP2 before P13, 7.0 before P13, and 7.1 before P02 allows remote authenticated users to bypass intended access restrictions and read metadata from certain folders via unspecified vectors. | ||||||||
CVSS v3 Severity: | 3.5 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 5.5 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N) 4.0 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N/E:U/RL:OF/RC:C)
3.0 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-264 | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: BUGTRAQ Type: UNKNOWN 20140411 ESA-2014-026: EMC Documentum Content Server Information Disclosure Vulnerability Source: CCN Type: ESA-2014-026 EMC Documentum Content Server Information Disclosure Vulnerability Source: MITRE Type: CNA CVE-2014-0642 Source: CCN Type: SA57898 EMC Documentum Content Server Metadata Access Security Bypass Security Issue Source: MISC Type: UNKNOWN http://twitter.com/artika4biz/statuses/455358950116823040 Source: CCN Type: BID-66796 EMC Documentum Content Server CVE-2014-0642 Information Disclosure Vulnerability Source: XF Type: UNKNOWN emc-documentum-cve20140642-info-disc(92403) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |