CVE Vulnerabilities

CVE-2015-0518

Published: Feb 14, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The Properties service in the D2FS web-service component in EMC Documentum D2 3.1 through SP1, 4.0 and 4.1 before 4.1 P22, and 4.2 before P11 allows remote authenticated users to obtain superuser privileges via an unspecified method call that modifies group permissions.

Affected Software

NameVendorStart VersionEnd Version
Documentum_d2Emc3.1 (including)3.1 (including)
Documentum_d2Emc3.1-sp1 (including)3.1-sp1 (including)
Documentum_d2Emc4.0 (including)4.0 (including)
Documentum_d2Emc4.1 (including)4.1 (including)
Documentum_d2Emc4.2 (including)4.2 (including)

References