CVE-2014-0629: High severity EMC Documentum TaskSpace vulnerability
EMC Documentum TaskSpace (TSP) 6.7SP1 before P25 and 6.7SP2 before P11 does not properly handle the interaction between the dmworld group and the dmsuperusersdynamic group, which allows remote authenticated users to obtain sensitive information and gain privileges in opportunistic circumstances by leveraging an incorrect group-addition implementation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0629?
CVE-2014-0629 is classified as a high-severity vulnerability due to its potential to allow unauthorized privilege escalation.
How do I fix CVE-2014-0629?
To mitigate CVE-2014-0629, ensure you apply the latest patches for EMC Documentum TaskSpace, specifically P25 for 6.7SP1 and P11 for 6.7SP2.
Who is affected by CVE-2014-0629?
CVE-2014-0629 affects users of EMC Documentum TaskSpace versions 6.7SP1 prior to P25 and 6.7SP2 prior to P11.
What types of vulnerabilities does CVE-2014-0629 represent?
CVE-2014-0629 represents a privilege escalation and information disclosure vulnerability.
Is authentication required to exploit CVE-2014-0629?
Yes, CVE-2014-0629 can only be exploited by remote authenticated users.