3.5
CVSSv2

CVE-2015-4537

Published: 22/08/2015 Updated: 24/12/2016
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:P/I:N/A:N

Vulnerability Summary

Lockbox in EMC Documentum D2 prior to 4.5 uses a hardcoded passphrase when a server lacks a D2.Lockbox file, which makes it easier for remote authenticated users to decrypt admin tickets by locating this passphrase in a decompiled D2 JAR archive.

Vulnerable Product Search on Vulmon Subscribe to Product

emc documentum d2