7.1

CVE-2014-4622

EMC Documentum Content Server before 6.7 SP2 P17, 7.0 through P15, and 7.1 before P08 does not properly check authorization for subgroups of privileged groups, which allows remote authenticated sysadmins to gain super-user privileges, and bypass intended restrictions on data access and server actions, via unspecified vectors.

Data is provided by the National Vulnerability Database (NVD)
EmcDocumentum Content Server Updatesp2 Version <= 6.7
EmcDocumentum Content Server Version6.5 Updatesp1
EmcDocumentum Content Server Version6.5 Updatesp2
EmcDocumentum Content Server Version6.5 Updatesp3
EmcDocumentum Content Server Version6.7 Update-
EmcDocumentum Content Server Version6.7 Updatesp1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.45% 0.607
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.1 3.9 10
AV:N/AC:H/Au:S/C:C/I:C/A:C