Vulnerability index

Browse CVEs

300 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Rsa Certificate Manager HIGH 7.8
CVE-2015-0523

EMC RSA Certificate Manager (RCM) before 6.9 build 558 and RSA Registration Manager (RRM) before 6.9 build 558 allow remote attackers to cause an Adm…

Fix: after 6.8
Fix from $1,950 2015-03-12
Documentum D2 HIGH 9.0
CVE-2015-0518

The Properties service in the D2FS web-service component in EMC Documentum D2 3.1 through SP1, 4.0 and 4.1 before 4.1 P22, and 4.2 before P11 allows …

Mitigation only
Fix from $1,950 2015-02-14
Unisphere Central MEDIUM 5.8
CVE-2015-0512

Open redirect vulnerability in EMC Unisphere Central before 4.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing…

Fix: after 3.5.0
Fix from $1,600 2015-02-02
Watch4net MEDIUM 6.5
CVE-2015-0515

Unrestricted file upload vulnerability in EMC M&R (aka Watch4Net) before 6.5u1 and ViPR SRM before 3.6.1 allows remote authenticated users to execute…

Fix: after 6.5
Fix from $1,600 2015-01-21
Watch4net MEDIUM 5.0
CVE-2015-0514EPSS 8%

EMC M&R (aka Watch4Net) before 6.5u1 and ViPR SRM before 3.6.1 might allow remote attackers to obtain cleartext data-center discovery credentials by …

Fix: after 6.5
Fix from $1,600 2015-01-21
Documentum Wdk MEDIUM 5.0
CVE-2014-4639

EMC Documentum Web Development Kit (WDK) before 6.8 does not properly generate random numbers for a certain parameter related to Webtop components, w…

Fix: after 6.7
Fix from $1,600 2015-01-07
Documentum Wdk MEDIUM 6.4
CVE-2014-4637

Open redirect vulnerability in EMC Documentum Web Development Kit (WDK) before 6.8 allows remote attackers to redirect users to arbitrary web sites a…

Fix: after 6.7
Fix from $1,600 2015-01-07
Documentum Wdk MEDIUM 5.0
CVE-2014-4638

EMC Documentum Web Development Kit (WDK) before 6.8 allows remote attackers to conduct frame-injection attacks and obtain sensitive information via u…

Fix: after 6.7
Fix from $1,600 2015-01-07
Documentum Wdk MEDIUM 6.8
CVE-2014-4636

Cross-site request forgery (CSRF) vulnerability in EMC Documentum Web Development Kit (WDK) before 6.8 allows remote attackers to hijack the authenti…

Fix: after 6.7
Fix from $1,600 2015-01-07
Documentum Content Server HIGH 9.0
CVE-2014-4626

EMC Documentum Content Server before 6.7 SP1 P29, 6.7 SP2 before P18, 7.0 before P16, and 7.1 before P09 allows remote authenticated users to gain pr…

Fix: after 6.7
Fix from $1,950 2014-12-17
Rsa Authentication Manager MEDIUM 5.8
CVE-2014-2516

Open redirect vulnerability in EMC RSA Authentication Manager 8.x before 8.1 Patch 6 allows remote attackers to redirect users to arbitrary web sites…

Mitigation only
Fix from $1,600 2014-12-12
Rsa Adaptive Authentication On Premise MEDIUM 5.0
CVE-2014-4631

RSA Adaptive Authentication (On-Premise) 6.0.2.1 through 7.1 P3, when using device binding in a Challenge SOAP call or using the RSA Adaptive Authent…

Mitigation only
Fix from $1,600 2014-12-08
Documentum Content Server HIGH 9.0
CVE-2014-4629

EMC Documentum Content Server 7.0, 7.1 before 7.1 P10, and 6.7 before SP2 P19 allows remote authenticated users to read or delete arbitrary files via…

No fix yet
Fix from $1,950 2014-12-06
Documentum Content Server HIGH 8.5
CVE-2014-4621

EMC Documentum Content Server before 6.7 SP2 P17, 7.0 through P15, and 7.1 before P08 does not properly check authorization for subtypes of protected…

Fix: after 6.7
Fix from $1,950 2014-09-17
Documentum Content Server HIGH 7.1
CVE-2014-4622

EMC Documentum Content Server before 6.7 SP2 P17, 7.0 through P15, and 7.1 before P08 does not properly check authorization for subgroups of privileg…

Fix: after 6.7
Fix from $1,950 2014-09-17
Rsa Identity Management And Governance HIGH 9.3
CVE-2014-4619

EMC RSA Identity Management and Governance (IMG) 6.5.x before 6.5.1 P11, 6.5.2 before P02HF01, and 6.8.x before 6.8.1 P07, when Novell Identity Manag…

No fix yet
Fix from $1,950 2014-08-28
Documentum Content Server HIGH 8.5
CVE-2014-4618

EMC Documentum Content Server before 6.7 SP2 P16 and 7.x before 7.1 P07 allows remote authenticated users to gain privileges via a user-created syste…

Fix: after 6.7
Fix from $1,950 2014-08-20
Documentum D2 HIGH 8.5
CVE-2014-2515

EMC Documentum D2 3.1 before P24, 3.1SP1 before P02, 4.0 before P11, 4.1 before P16, and 4.2 before P05 does not properly restrict tickets provided b…

Mitigation only
Fix from $1,950 2014-08-20
Rsa Archer Egrc MEDIUM 6.8
CVE-2014-0641

Cross-site request forgery (CSRF) vulnerability in EMC RSA Archer GRC Platform 5.x before 5.5 SP1 allows remote attackers to hijack the authenticatio…

Mitigation only
Fix from $1,600 2014-08-20
Digital Assets Manager MEDIUM 6.8
CVE-2014-2518

Multiple cross-site request forgery (CSRF) vulnerabilities in EMC Documentum WDK before 6.7SP1 P28 and 6.7SP2 before P15 allow remote attackers to hi…

Mitigation only
Fix from $1,600 2014-08-20
Rsa Archer Egrc MEDIUM 6.5
CVE-2014-2517

Unspecified vulnerability in EMC RSA Archer GRC Platform 5.x before 5.5 SP1 allows remote authenticated users to gain privileges via unknown vectors.

Mitigation only
Fix from $1,600 2014-08-20
Documentum Content Server MEDIUM 6.3
CVE-2014-2520

EMC Documentum Content Server before 6.7 SP2 P16 and 7.x before 7.1 P07, when Oracle Database is used, does not properly restrict DQL hints, which al…

Fix: after 6.7
Fix from $1,600 2014-08-20
Documentum Content Server MEDIUM 6.3
CVE-2014-2521

EMC Documentum Content Server before 6.7 SP2 P16 and 7.x before 7.1 P07 allows remote authenticated users to read sensitive object metadata via an RP…

Fix: after 6.7
Fix from $1,600 2014-08-20
Rsa Archer Egrc MEDIUM 5.4
CVE-2014-2505

EMC RSA Archer GRC Platform 5.x before 5.5 SP1 allows remote attackers to trigger the download of arbitrary code, and consequently change the product…

Mitigation only
Fix from $1,600 2014-08-20
Recoverpoint Appliance MEDIUM 5.8
CVE-2014-2519

The default configuration of EMC RecoverPoint Appliance (RPA) 4.1 before 4.1.0.1 does not enable a firewall, which allows remote attackers to obtain …

Mitigation only
Fix from $1,600 2014-07-19
Documentum Content Server HIGH 8.2
CVE-2014-2513

EMC Documentum Content Server before 6.7 SP1 P28, 6.7 SP2 before P15, 7.0 before P15, and 7.1 before P06 does not properly check authorization after …

Fix: after 6.7
Fix from $1,950 2014-07-08
Documentum Content Server HIGH 8.2
CVE-2014-2514

EMC Documentum Content Server before 6.7 SP1 P28, 6.7 SP2 before P15, 7.0 before P15, and 7.1 before P06 does not properly check authorization and do…

Fix: after 6.7
Fix from $1,950 2014-07-08
Centerstage MEDIUM 6.8
CVE-2014-2510

The JAXB XML parser in EMC Documentum Foundation Services (DFS) 6.6 before P39, 6.7 SP1 before P28, and 6.7 SP2 before P15, as used in My Documentum …

Mitigation only
Fix from $1,600 2014-07-08
Smarts Network Configuration Manager MEDIUM 5.4
CVE-2014-2509

Session fixation vulnerability in the Report Advisor (RA) component in EMC Network Configuration Manager (NCM) before 9.3 allows remote attackers to …

Fix: after 9.2
Fix from $1,600 2014-07-01
Rsa Bsafe Toolkits MEDIUM 5.8
CVE-2013-6078

The default configuration of EMC RSA BSAFE Toolkits and RSA Data Protection Manager (DPM) 20130918 uses the Dual Elliptic Curve Deterministic Random …

Mitigation only
Fix from $1,600 2014-06-17