CVE-2018-7660: Opentext Documentum d2

Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.

In OpenText Documentum D2 Webtop v4.6.0030 build 059, a Reflected Cross-Site Scripting Vulnerability could potentially be exploited by malicious users to compromise the affected system via the servlet/Download _docbase or _username parameter.

Affected products

  • Opentext Documentum d2: version 4.6.0030 only

Published 2018-04-11. Last modified 2026-06-17.