7.5

CVE-2015-4535

Java Method Server (JMS) in EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02, when __debug_trace__ is configured, allows remote authenticated users to gain super-user privileges by leveraging the ability to read a log file containing a login ticket.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Emc ≫ Documentum Content Server Version 6.7 Update sp1
Emc ≫ Documentum Content Server Version 6.7 Update sp2
Emc ≫ Documentum Content Server Version 7.0
Emc ≫ Documentum Content Server Version 7.1
Emc ≫ Documentum Content Server Version 7.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.86% 0.765
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 6.8 8.5
AV:N/AC:M/Au:S/C:P/I:P/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://seclists.org/bugtraq/2015/Aug/86
http://www.securitytracker.com/id/1033296
http://www.securityfocus.com/bid/76409