CVE-2016-8213
EMC Documentum WebTop Version 6.8, prior to P18 and Version 6.8.1, prior to P06; and EMC Documentum TaskSpace version 6.7SP3, prior to P02; and EMC Documentum Capital Projects Version 1.9, prior to P30 and Version 1.10, prior to P17; and EMC Documentum…
Does this matter?
Lower severity and a low EPSS score (0.97%). Track it; it rarely justifies an emergency change on its own.
Description
EMC Documentum WebTop Version 6.8, prior to P18 and Version 6.8.1, prior to P06; and EMC Documentum TaskSpace version 6.7SP3, prior to P02; and EMC Documentum Capital Projects Version 1.9, prior to P30 and Version 1.10, prior to P17; and EMC Documentum Administrator Version 7.0, Version 7.1, and Version 7.2 prior to P18 contain a Stored Cross-Site Scripting Vulnerability that could potentially be exploited by malicious users to compromise the affected system.
- CVSS 3.0
- 6.1 MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
- EPSS
- 0.97% probability · 60th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-79
- Affected
- emc/documentum administrator · emc/documentum capital projects · emc/documentum taskspace · emc/documentum webtop
- Source
- security_alert@emc.com
References
- http://www.securityfocus.com/archive/1/540019/30/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/95625
- http://www.securitytracker.com/id/1037626
- http://www.securityfocus.com/archive/1/540019/30/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/95625
- http://www.securitytracker.com/id/1037626
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.