CVE-2016-0914 Information
Feb 14, 2021
cve
Description
EMC Documentum WebTop 6.8 before Patch 13 and 6.8.1 before Patch 02 Documentum Administrator 7.x before 7.2 Patch 13 Documentum Capital Projects 1.9 before Patch 23 and 1.10 before Patch 10 and Documentum TaskSpace 6.7 SP3 allow remote authenticated users to bypass intended access restrictions and execute arbitrary IAPI/IDQL commands via the IAPI/IDQL interface.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Reference
http://seclists.org/bugtraq/2016/Jun/92 http://www.securitytracker.com/id/1036153
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
LOW
Availability Impact
LOW
Base Score
LOW
Base Severity
6.3
Share on: