VYPR
Unrated severityNVD Advisory· Published Aug 20, 2015· Updated May 6, 2026

CVE-2015-4534

CVE-2015-4534

Description

Java Method Server (JMS) in EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02 allows remote authenticated users to execute arbitrary code by forging a signature for a query string that lacks the method_verb parameter.

Affected products

5
  • cpe:2.3:a:emc:documentum_content_server:6.7:sp1:*:*:*:*:*:*+ 4 more
    • cpe:2.3:a:emc:documentum_content_server:6.7:sp1:*:*:*:*:*:*
    • cpe:2.3:a:emc:documentum_content_server:6.7:sp2:*:*:*:*:*:*
    • cpe:2.3:a:emc:documentum_content_server:7.0:*:*:*:*:*:*:*
    • cpe:2.3:a:emc:documentum_content_server:7.1:*:*:*:*:*:*:*
    • cpe:2.3:a:emc:documentum_content_server:7.2:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.