Java Method Server (JMS) in EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02, when __debug_trace__ is configured, allows remote authenticated users to gain super-user privileges by leveraging the ability to read a log file containing a login ticket.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2015-08-20 03:59
Updated : 2017-09-20 18:29
NVD link : CVE-2015-4535
Mitre link : CVE-2015-4535
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
emc
- documentum_content_server