PT-2017-9532 · Emc · Emc Documentum Webtop+3

Published

2017-01-23

·

Updated

2017-02-11

·

CVE-2016-8213

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions EMC Documentum WebTop versions 6.8 through 6.8 P17 and version 6.8.1 through 6.8.1 P05 EMC Documentum TaskSpace version 6.7SP3 through 6.7SP3 P01 EMC Documentum Capital Projects versions 1.9 through 1.9 P29 and version 1.10 through 1.10 P16 EMC Documentum Administrator versions 7.0 through 7.2 P17
Description The issue is a Stored Cross-Site Scripting vulnerability that could potentially be exploited by malicious users to compromise the affected system.
Recommendations For EMC Documentum WebTop versions 6.8 through 6.8 P17, update to version 6.8 P18 or later. For EMC Documentum WebTop version 6.8.1 through 6.8.1 P05, update to version 6.8.1 P06 or later. For EMC Documentum TaskSpace version 6.7SP3 through 6.7SP3 P01, update to version 6.7SP3 P02 or later. For EMC Documentum Capital Projects versions 1.9 through 1.9 P29, update to version 1.9 P30 or later. For EMC Documentum Capital Projects version 1.10 through 1.10 P16, update to version 1.10 P17 or later. For EMC Documentum Administrator versions 7.0 through 7.2 P17, update to version 7.2 P18 or later.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-8213

Affected Products

Emc Documentum Administrator
Documentum Capital Projects
Emc Documentum Taskspace
Emc Documentum Webtop