CVE-2014-2507: OS Command Injection
EMC Documentum Content Server before 6.7 SP1 P28, 6.7 SP2 before P14, 7.0 before P15, and 7.1 before P05 allows remote authenticated users to execute arbitrary commands via shell metacharacters in arguments to unspecified methods.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2507?
CVE-2014-2507 is considered a critical vulnerability due to its potential to allow remote authenticated users to execute arbitrary commands.
How do I fix CVE-2014-2507?
To mitigate CVE-2014-2507, update EMC Documentum Content Server to a patched version that is beyond the specified vulnerable versions.
Which versions of EMC Documentum Content Server are affected by CVE-2014-2507?
CVE-2014-2507 affects EMC Documentum Content Server versions before 6.7 SP1 P28, 6.7 SP2 before P14, 7.0 before P15, and 7.1 before P05.
Who can exploit CVE-2014-2507?
CVE-2014-2507 can be exploited by remote authenticated users, making it crucial to safeguard user access.
What types of attacks can CVE-2014-2507 facilitate?
CVE-2014-2507 can allow attackers to perform command injection, leading to unauthorized command execution on the server.