EMC Documentum xCelerated Management System (xMS) 1.1 before P14 stores cleartext Windows Service credentials in a batch file during Documentum Platform and xCelerated Composition Platform (xCP) provisioning, which allows local users to obtain sensitive information by reading a file.
References
Configurations
History
21 Nov 2024, 02:23
Type | Values Removed | Values Added |
---|---|---|
References | () http://packetstormsecurity.com/files/130959/EMC-Documentum-xMS-Sensitive-Information-Disclosure.html - | |
References | () http://seclists.org/bugtraq/2015/Mar/134 - |
Information
Published : 2015-03-24 00:59
Updated : 2025-04-12 10:46
NVD link : CVE-2015-0527
Mitre link : CVE-2015-0527
CVE.ORG link : CVE-2015-0527
JSON object : View
Products Affected
emc
- documentum_xcelerated_management_system
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor