mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 19:17:37 +02:00
938 B
938 B
CVE-2015-4544
Description
EMC Documentum Content Server before 7.1P20 and 7.2.x before 7.2P04 does not properly verify authorization for dm_job object access, which allows remote authenticated users to obtain superuser privileges via crafted object operations. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-4626.
POC
Reference
- http://packetstormsecurity.com/files/133441/EMC-Documentum-Content-Server-Privilege-Escalation.html
- http://packetstormsecurity.com/files/133441/EMC-Documentum-Content-Server-Privilege-Escalation.html
Github
No PoCs found on GitHub currently.