PT-2016-7017 · Emc · Emc Documentum D2
Published
2016-09-17
·
Updated
2017-08-13
·
CVE-2016-6644
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
EMC Documentum D2 versions 4.5 before patch 15
EMC Documentum D2 versions 4.6 before patch 03
Description
The issue allows remote attackers to read arbitrary Docbase documents by leveraging knowledge of an
r object id value.Recommendations
For EMC Documentum D2 version 4.5, apply patch 15 to resolve the issue.
For EMC Documentum D2 version 4.6, apply patch 03 to resolve the issue.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Emc Documentum D2