CVE-2014-4639

EMC Documentum Web Development Kit (WDK) before 6.8 does not properly generate random numbers for a certain parameter related to Webtop components, which makes it easier for remote attackers to conduct phishing attacks via brute-force attempts to predict the parameter value.
Configurations

Configuration 1 (hide)

cpe:2.3:a:emc:documentum_wdk:*:sp2:*:*:*:*:*:*

History

No history.

Information

Published : 2015-01-07 02:59

Updated : 2024-02-04 18:35


NVD link : CVE-2014-4639

Mitre link : CVE-2014-4639

CVE.ORG link : CVE-2014-4639


JSON object : View

Products Affected

emc

  • documentum_wdk
CWE
CWE-189

Numeric Errors