Vulnerabilities > EMC > Documentum Digital Asset Manager > High

DATE CVE VULNERABILITY TITLE RISK
2014-06-06 CVE-2014-2503 Improper Input Validation vulnerability in EMC Documentum Digital Asset Manager 6.5
The thumbnail proxy server in EMC Documentum Digital Asset Manager (DAM) 6.5 SP3, 6.5 SP4, 6.5 SP5, and 6.5 SP6 before P13 allows remote attackers to conduct Documentum Query Language (DQL) injection attacks and bypass intended restrictions on querying objects via a crafted parameter in a query string.
network
low complexity
emc CWE-20
7.5