CVE-2014-4639: Emc Documentum Wdk

Medium severity, CVSS 5.0. EPSS: 2.2% chance of exploitation in the next 30 days.

EMC Documentum Web Development Kit (WDK) before 6.8 does not properly generate random numbers for a certain parameter related to Webtop components, which makes it easier for remote attackers to conduct phishing attacks via brute-force attempts to predict the parameter value.

Affected products

  • Emc Documentum Wdk: up to and including 6.7

Published 2015-01-07. Last modified 2026-06-17.