CVE-2014-4637: Medium severity emc documentum wdk vulnerability
Published Jan 7, 2015
·Updated
Open redirect vulnerability in EMC Documentum Web Development Kit (WDK) before 6.8 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via an unspecified parameter.
Affected Software
1 affected component
EMC Documentum WDK<=6.7
Event History
Jan 7, 2015
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-4637?
CVE-2014-4637 is rated as a medium severity vulnerability due to its potential for exploitation in phishing attacks.
2
How do I fix CVE-2014-4637?
To mitigate CVE-2014-4637, update the EMC Documentum Web Development Kit to version 6.8 or later.
3
What software is affected by CVE-2014-4637?
CVE-2014-4637 affects EMC Documentum Web Development Kit versions prior to 6.8, specifically versions up to 6.7.
4
What type of attack does CVE-2014-4637 allow?
CVE-2014-4637 allows remote attackers to perform open redirect attacks, potentially leading to phishing.
5
Can CVE-2014-4637 be exploited remotely?
Yes, CVE-2014-4637 can be exploited remotely by an attacker to redirect users to arbitrary websites.