CVE-2014-2506
published 2014-06-08CVE-2014-2506: EMC Documentum Content Server before 6.7 SP1 P28, 6.7 SP2 before P14, 7.0 before P15, and 7.1 before P05 allows remote authenticated users to obtain super-user…
PriorityP343high8.5CVSS 2.0
AVNACMAuSCCICAC
EPSS
3.22%
86.6th percentile
EMC Documentum Content Server before 6.7 SP1 P28, 6.7 SP2 before P14, 7.0 before P15, and 7.1 before P05 allows remote authenticated users to obtain super-user privileges for system-object creation, and bypass intended restrictions on data access and server actions, via unspecified vectors.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| emc | documentum_content_server | <= 6.7 | — |
| emc | documentum_content_server | — | — |
| emc | documentum_content_server | — | — |
| emc | documentum_content_server | — | — |
| emc | documentum_content_server | — | — |
| emc | documentum_content_server | — | — |
| emc | documentum_content_server | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://archives.neohapsis.com/archives/bugtraq/2014-06/0051.htmlhttp://packetstormsecurity.com/files/126960/EMC-Documentum-Content-Server-Escalation-Injection.htmlhttp://secunia.com/advisories/58954http://www.securityfocus.com/archive/1/532596/100/0/threadedhttp://www.securityfocus.com/bid/67917http://www.securitytracker.com/id/1030339http://archives.neohapsis.com/archives/bugtraq/2014-06/0051.htmlhttp://packetstormsecurity.com/files/126960/EMC-Documentum-Content-Server-Escalation-Injection.htmlhttp://secunia.com/advisories/58954http://www.securityfocus.com/archive/1/532596/100/0/threadedhttp://www.securityfocus.com/bid/67917http://www.securitytracker.com/id/1030339
2014-06-08
Published