CVE-2015-4535

EUVD-2015-4555
Java Method Server (JMS) in EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02, when __debug_trace__ is configured, allows remote authenticated users to gain super-user privileges by leveraging the ability to read a log file containing a login ticket.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 70%
Affected Products (NVD)
VendorProductVersion
emcdocumentum_content_server
6.7:sp1
emcdocumentum_content_server
6.7:sp2
emcdocumentum_content_server
7.0
emcdocumentum_content_server
7.1
emcdocumentum_content_server
7.2
𝑥
= Vulnerable software versions
Common Weakness Enumeration