// For flags

CVE-2014-2511

 

Severity Score

4.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Multiple cross-site scripting (XSS) vulnerabilities in EMC Documentum WebTop before 6.7 SP1 P28 and 6.7 SP2 before P14 allow remote attackers to inject arbitrary web script or HTML via the (1) startat or (2) entryId parameter.

Múltiples vulnerabilidades de XSS en EMC Documentum WebTop anterior a 6.7 SP1 P28 y 6.7 SP2 anterior a P14 permiten a atacantes remotos inyectar secuencias de comandos web o HTML arbitrarios a través del parámetro (1) startat o (2) entryId.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2014-03-14 CVE Reserved
  • 2014-08-18 CVE Published
  • 2023-03-07 EPSS Updated
  • 2024-08-06 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Emc
Search vendor "Emc"
Digital Assets Manager
Search vendor "Emc" for product "Digital Assets Manager"
6.5
Search vendor "Emc" for product "Digital Assets Manager" and version "6.5"
-
Affected
Emc
Search vendor "Emc"
Digital Assets Manager
Search vendor "Emc" for product "Digital Assets Manager"
6.5
Search vendor "Emc" for product "Digital Assets Manager" and version "6.5"
sp5
Affected
Emc
Search vendor "Emc"
Digital Assets Manager
Search vendor "Emc" for product "Digital Assets Manager"
6.5
Search vendor "Emc" for product "Digital Assets Manager" and version "6.5"
sp6
Affected
Emc
Search vendor "Emc"
Documentum Administrator
Search vendor "Emc" for product "Documentum Administrator"
6.7
Search vendor "Emc" for product "Documentum Administrator" and version "6.7"
-
Affected
Emc
Search vendor "Emc"
Documentum Administrator
Search vendor "Emc" for product "Documentum Administrator"
6.7
Search vendor "Emc" for product "Documentum Administrator" and version "6.7"
sp1
Affected
Emc
Search vendor "Emc"
Documentum Administrator
Search vendor "Emc" for product "Documentum Administrator"
6.7
Search vendor "Emc" for product "Documentum Administrator" and version "6.7"
sp2
Affected
Emc
Search vendor "Emc"
Documentum Administrator
Search vendor "Emc" for product "Documentum Administrator"
7.0
Search vendor "Emc" for product "Documentum Administrator" and version "7.0"
-
Affected
Emc
Search vendor "Emc"
Documentum Administrator
Search vendor "Emc" for product "Documentum Administrator"
7.1
Search vendor "Emc" for product "Documentum Administrator" and version "7.1"
-
Affected
Emc
Search vendor "Emc"
Documentum Capital Projects
Search vendor "Emc" for product "Documentum Capital Projects"
1.8
Search vendor "Emc" for product "Documentum Capital Projects" and version "1.8"
-
Affected
Emc
Search vendor "Emc"
Documentum Capital Projects
Search vendor "Emc" for product "Documentum Capital Projects"
1.9
Search vendor "Emc" for product "Documentum Capital Projects" and version "1.9"
-
Affected
Emc
Search vendor "Emc"
Documentum Webtop
Search vendor "Emc" for product "Documentum Webtop"
6.7
Search vendor "Emc" for product "Documentum Webtop" and version "6.7"
-
Affected
Emc
Search vendor "Emc"
Documentum Webtop
Search vendor "Emc" for product "Documentum Webtop"
6.7
Search vendor "Emc" for product "Documentum Webtop" and version "6.7"
sp1
Affected
Emc
Search vendor "Emc"
Documentum Webtop
Search vendor "Emc" for product "Documentum Webtop"
6.7
Search vendor "Emc" for product "Documentum Webtop" and version "6.7"
sp2
Affected
Emc
Search vendor "Emc"
Engineering Plant Facilities Management Solution For Documentum
Search vendor "Emc" for product "Engineering Plant Facilities Management Solution For Documentum"
1.7
Search vendor "Emc" for product "Engineering Plant Facilities Management Solution For Documentum" and version "1.7"
-
Affected
Emc
Search vendor "Emc"
Engineering Plant Facilities Management Solution For Documentum
Search vendor "Emc" for product "Engineering Plant Facilities Management Solution For Documentum"
1.7
Search vendor "Emc" for product "Engineering Plant Facilities Management Solution For Documentum" and version "1.7"
sp1
Affected
Emc
Search vendor "Emc"
Records Client
Search vendor "Emc" for product "Records Client"
6.7
Search vendor "Emc" for product "Records Client" and version "6.7"
-
Affected
Emc
Search vendor "Emc"
Records Client
Search vendor "Emc" for product "Records Client"
6.7
Search vendor "Emc" for product "Records Client" and version "6.7"
sp1
Affected
Emc
Search vendor "Emc"
Records Client
Search vendor "Emc" for product "Records Client"
6.7
Search vendor "Emc" for product "Records Client" and version "6.7"
sp2
Affected
Emc
Search vendor "Emc"
Task Space
Search vendor "Emc" for product "Task Space"
6.7
Search vendor "Emc" for product "Task Space" and version "6.7"
-
Affected
Emc
Search vendor "Emc"
Task Space
Search vendor "Emc" for product "Task Space"
6.7
Search vendor "Emc" for product "Task Space" and version "6.7"
sp1
Affected
Emc
Search vendor "Emc"
Task Space
Search vendor "Emc" for product "Task Space"
6.7
Search vendor "Emc" for product "Task Space" and version "6.7"
sp2
Affected
Emc
Search vendor "Emc"
Web Publishers
Search vendor "Emc" for product "Web Publishers"
6.5
Search vendor "Emc" for product "Web Publishers" and version "6.5"
-
Affected
Emc
Search vendor "Emc"
Web Publishers
Search vendor "Emc" for product "Web Publishers"
6.5
Search vendor "Emc" for product "Web Publishers" and version "6.5"
sp6
Affected
Emc
Search vendor "Emc"
Web Publishers
Search vendor "Emc" for product "Web Publishers"
6.5
Search vendor "Emc" for product "Web Publishers" and version "6.5"
sp7
Affected