CVE Vulnerabilities

CVE-2015-0518

Published: Feb 14, 2015 | Modified: Sep 08, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The Properties service in the D2FS web-service component in EMC Documentum D2 3.1 through SP1, 4.0 and 4.1 before 4.1 P22, and 4.2 before P11 allows remote authenticated users to obtain superuser privileges via an unspecified method call that modifies group permissions.

Affected Software

Name Vendor Start Version End Version
Documentum_d2 Emc 3.1 (including) 3.1 (including)
Documentum_d2 Emc 3.1-sp1 (including) 3.1-sp1 (including)
Documentum_d2 Emc 4.0 (including) 4.0 (including)
Documentum_d2 Emc 4.1 (including) 4.1 (including)
Documentum_d2 Emc 4.2 (including) 4.2 (including)

References