cbcvebase.
CVE-2014-2513
published 2014-07-08

CVE-2014-2513: EMC Documentum Content Server before 6.7 SP1 P28, 6.7 SP2 before P15, 7.0 before P15, and 7.1 before P06 does not properly check authorization after creation…

PriorityP350high8.2CVSS 2.0
AVNACMAuSCCICAP
EXPLOIT
EPSS
2.92%
85.3th percentile
EMC Documentum Content Server before 6.7 SP1 P28, 6.7 SP2 before P15, 7.0 before P15, and 7.1 before P06 does not properly check authorization after creation of an object, which allows remote authenticated users to execute arbitrary code with super-user privileges via a custom script.

Affected

5 ranges
VendorProductVersion rangeFixed in
emcdocumentum_content_server<= 6.7
emcdocumentum_content_server
emcdocumentum_content_server
emcdocumentum_content_server
emcdocumentum_content_server
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.