Unrated severityNVD Advisory· Published Aug 20, 2015· Updated May 6, 2026
CVE-2015-4534
CVE-2015-4534
Description
Java Method Server (JMS) in EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02 allows remote authenticated users to execute arbitrary code by forging a signature for a query string that lacks the method_verb parameter.
Affected products
5cpe:2.3:a:emc:documentum_content_server:6.7:sp1:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:emc:documentum_content_server:6.7:sp1:*:*:*:*:*:*
- cpe:2.3:a:emc:documentum_content_server:6.7:sp2:*:*:*:*:*:*
- cpe:2.3:a:emc:documentum_content_server:7.0:*:*:*:*:*:*:*
- cpe:2.3:a:emc:documentum_content_server:7.1:*:*:*:*:*:*:*
- cpe:2.3:a:emc:documentum_content_server:7.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.