Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2018-7659

Disclosure Date: April 11, 2018 (last updated November 26, 2024)
In OpenText Documentum D2 Webtop v4.6.0030 build 059, a Stored Cross-Site Scripting Vulnerability could potentially be exploited by malicious users to compromise the affected system via a filename of an uploaded image file.
0
Attacker Value
Unknown

CVE-2018-7660

Disclosure Date: April 11, 2018 (last updated November 26, 2024)
In OpenText Documentum D2 Webtop v4.6.0030 build 059, a Reflected Cross-Site Scripting Vulnerability could potentially be exploited by malicious users to compromise the affected system via the servlet/Download _docbase or _username parameter.
0
Attacker Value
Unknown

CVE-2017-5586

Disclosure Date: February 22, 2017 (last updated November 26, 2024)
OpenText Documentum D2 (formerly EMC Documentum D2) 4.x allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the BeanShell (bsh) and Apache Commons Collections (ACC) libraries.
0
Attacker Value
Unknown

CVE-2016-9873

Disclosure Date: February 03, 2017 (last updated November 25, 2024)
EMC Documentum D2 version 4.5 and EMC Documentum D2 version 4.6 has a DQL Injection Vulnerability that could potentially be exploited by malicious users to compromise the affected system. An authenticated low-privileged attacker could potentially exploit this vulnerability to access information, modify data or disrupt services by causing execution of arbitrary DQL commands on the application.
0
Attacker Value
Unknown

CVE-2016-9872

Disclosure Date: February 03, 2017 (last updated November 25, 2024)
EMC Documentum D2 version 4.5 and EMC Documentum D2 version 4.6 has Reflected Cross-Site Scripting Vulnerabilities that could potentially be exploited by malicious users to compromise the affected system.
0