CVE-2013-0939
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
10/05/2013
Last modified:
11/04/2025
Description
EMC Documentum Webtop before 6.7 SP2, Documentum WDK before 6.7 SP2, Documentum Taskspace before 6.7 SP2, and Documentum Records Manager before 6.7 SP2 allow remote attackers to obtain sensitive information via vectors involving cross-origin frame navigation, related to a "Cross Frame Scripting" issue.
Impact
Base Score 2.0
5.80
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:emc:documentum_records_manager:6.7:*:*:*:*:*:*:* | ||
| cpe:2.3:a:emc:documentum_records_manager:6.7:sp1:*:*:*:*:*:* | ||
| cpe:2.3:a:emc:documentum_taskspace:6.7:*:*:*:*:*:*:* | ||
| cpe:2.3:a:emc:documentum_taskspace:6.7:sp1:*:*:*:*:*:* | ||
| cpe:2.3:a:emc:documentum_wdk:6.7:*:*:*:*:*:*:* | ||
| cpe:2.3:a:emc:documentum_wdk:6.7:sp1:*:*:*:*:*:* | ||
| cpe:2.3:a:emc:documentum_webtop:6.7:*:*:*:*:*:*:* | ||
| cpe:2.3:a:emc:documentum_webtop:6.7:sp1:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



