4.3
CVSSv2

CVE-2013-3281

Published: 06/11/2013 Updated: 20/12/2013
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in EMC Documentum Webtop prior to 6.7 SP2 P07, Documentum WDK prior to 6.7 SP2 P07, Documentum Taskspace prior to 6.7 SP2 P07, Documentum Records Manager prior to 6.7 SP2 P07, Documentum Web Publisher prior to 6.5 SP7, Documentum Digital Asset Manager prior to 6.5 SP6, Documentum Administrator prior to 6.7 SP2 P07, and Documentum Capital Projects prior to 1.8 P01 allows remote malicious users to inject arbitrary web script or HTML via a crafted parameter in a URL.

Vulnerable Product Search on Vulmon Subscribe to Product

emc documentum taskspace

emc documentum taskspace 6.7

emc documentum capital projects

emc documentum wdk 6.7

emc documentum wdk

emc documentum digital asset manager 6.5

emc documentum digital asset manager

emc documentum administrator 6.7

emc documentum administrator

emc documentum webtop

emc documentum webtop 6.7

emc documentum web publisher

emc documentum web publisher 6.5