CVE Database
/

CVE-2014-4626

Back to search

CVE-2014-4626

Published: Dec 17, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

EMC Documentum Content Server before 6.7 SP1 P29, 6.7 SP2 before P18, 7.0 before P16, and 7.1 before P09 allows remote authenticated users to gain privileges by (1) placing a command in a dm_job object and setting this object's owner to a privileged user or placing a rename action in a dm_job_request object and waiting for a (2) dm_UserRename or (3) dm_GroupRename service task, aka ESA-2014-105. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-2515.

VendorProductVersions

n/a

n/a

affected
n/a

References

VU#315340
third-party-advisory
x_refsource_CERT-VN
VU#386056
third-party-advisory
x_refsource_CERT-VN
VU#874632
third-party-advisory
x_refsource_CERT-VN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now