CVE-2014-0642: Medium severity EMC Documentum Content Server vulnerability
EMC Documentum Content Server before 6.7 SP1 P26, 6.7 SP2 before P13, 7.0 before P13, and 7.1 before P02 allows remote authenticated users to bypass intended access restrictions and read metadata from certain folders via unspecified vectors.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
EMC Documentum Content Serverto a version that resolves this vulnerability.Fixed in 6.7 SP1 P26
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0642?
CVE-2014-0642 is considered a moderate severity vulnerability as it allows remote authenticated users to bypass access restrictions.
How do I fix CVE-2014-0642?
To remediate CVE-2014-0642, you should upgrade to EMC Documentum Content Server version 6.7 SP1 P26 or later, 6.7 SP2 P13 or later, 7.0 P13 or later, or 7.1 P02 or later.
Who is affected by CVE-2014-0642?
CVE-2014-0642 affects users of EMC Documentum Content Server versions prior to the specified patches across multiple versions including 6.0, 6.5, 6.6, 6.7, and 7.0.
What type of access does CVE-2014-0642 allow?
CVE-2014-0642 allows remote authenticated users to read metadata from certain folders that they should not have access to.
What are the implications of not addressing CVE-2014-0642?
Not addressing CVE-2014-0642 can lead to unauthorized access to sensitive metadata, potentially exposing confidential information.