Java Method Server (JMS) in EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02, when __debug_trace__ is configured, allows remote authenticated users to gain super-user privileges by leveraging the ability to read a log file containing a login ticket.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 02:31
Type | Values Removed | Values Added |
---|---|---|
References | () http://seclists.org/bugtraq/2015/Aug/86 - | |
References | () http://www.securityfocus.com/bid/76409 - | |
References | () http://www.securitytracker.com/id/1033296 - |
Information
Published : 2015-08-20 10:59
Updated : 2024-11-21 02:31
NVD link : CVE-2015-4535
Mitre link : CVE-2015-4535
CVE.ORG link : CVE-2015-4535
JSON object : View
Products Affected
emc
- documentum_content_server
CWE
CWE-264
Permissions, Privileges, and Access Controls