CVE-2014-4639

Severity CVSS v4.0:
Pending analysis
Type:
CWE-189 Numeric Errors
Publication date:
07/01/2015
Last modified:
12/04/2025

Description

EMC Documentum Web Development Kit (WDK) before 6.8 does not properly generate random numbers for a certain parameter related to Webtop components, which makes it easier for remote attackers to conduct phishing attacks via brute-force attempts to predict the parameter value.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:emc:documentum_wdk:*:sp2:*:*:*:*:*:* 6.7 (including)