CVE-2013-0939: Input Validation
EMC Documentum Webtop before 6.7 SP2, Documentum WDK before 6.7 SP2, Documentum Taskspace before 6.7 SP2, and Documentum Records Manager before 6.7 SP2 allow remote attackers to obtain sensitive information via vectors involving cross-origin frame navigation, related to a "Cross Frame Scripting" issue.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0939?
The CVE-2013-0939 vulnerability is classified as a medium severity issue due to its potential for sensitive information exposure.
How do I fix CVE-2013-0939?
To mitigate CVE-2013-0939, upgrade EMC Documentum products to versions 6.7 SP2 or later.
What products are affected by CVE-2013-0939?
CVE-2013-0939 affects EMC Documentum Webtop, Documentum WDK, Documentum Taskspace, and Documentum Records Manager before version 6.7 SP2.
What type of exploit is associated with CVE-2013-0939?
CVE-2013-0939 involves a Cross Frame Scripting vulnerability that can lead to sensitive information leakage through cross-origin frame navigation.
Can CVE-2013-0939 be exploited remotely?
Yes, CVE-2013-0939 can be exploited remotely, allowing attackers to access sensitive information without needing physical access.