CVE-2014-2511 PUBLISHED CVSS 4.300000190734863 MEDIUM

Multiple cross-site scripting (XSS) vulnerabilities in EMC Documentum WebTop before 6.7 SP1 P28 and 6.7 SP2 before P14 allow remote attackers to inject arbitrary web script or HTML via the (1) startat or (2) entryId parameter.

EPSS 0.30% · 52.6th percentile

Risk Scores

CVSS v2.0
4.300000190734863
EPSS Score
0.30%
52.6th percentile

Affected Products

VendorProductVersions
emcdocumentum_capital_projects1.9, 1.8
emcweb_publishers6.5, 6.5, 6.5
emctask_space6.7, 6.7, 6.7
emcdocumentum_webtop6.7, 6.7, 6.7
emcdocumentum_administrator6.7, 6.7, 6.7
emcengineering_plant_facilities_management_solution_for_documentum1.7, 1.7
n/an/a*
emcrecords_client6.7, 6.7, 6.7
emcdigital_assets_manager6.5, 6.5, 6.5

Timeline

References

Open in Interactive Console →