CVE-2014-2518: CSRF
Multiple cross-site request forgery (CSRF) vulnerabilities in EMC Documentum WDK before 6.7SP1 P28 and 6.7SP2 before P15 allow remote attackers to hijack the authentication of arbitrary users.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2518?
CVE-2014-2518 is classified as a medium severity vulnerability due to its potential for cross-site request forgery attacks.
How do I fix CVE-2014-2518?
To mitigate CVE-2014-2518, it is recommended to upgrade EMC Documentum WDK to version 6.7SP1 P28 or later.
What types of attacks can CVE-2014-2518 facilitate?
CVE-2014-2518 could allow remote attackers to hijack the authentication of users, leading to unauthorized access.
Which EMC products are affected by CVE-2014-2518?
CVE-2014-2518 affects various EMC products including Documentum WDK, Documentum Administrator, and Documentum Records Manager among others.
What versions of EMC Documentum are vulnerable to CVE-2014-2518?
CVE-2014-2518 affects EMC Documentum WDK versions before 6.7SP1 P28 and 6.7SP2 before P15.