← Back

CVE-2014-2503

nvd nist
Published: Jun 6, 2014Modified: May 6, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

The thumbnail proxy server in EMC Documentum Digital Asset Manager (DAM) 6.5 SP3, 6.5 SP4, 6.5 SP5, and 6.5 SP6 before P13 allows remote attackers to conduct Documentum Query Language (DQL) injection attacks and bypass intended restrictions on querying objects via a crafted parameter in a query string.

Affected (4)

1 product
Documentum Digital Asset Manager
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Emc
Version 6.5 sp3
Version 6.5 sp4
Version 6.5 sp5
Version 6.5 sp6

Timeline

No history available yet.