EMC Documentum Content Server before 6.7 SP2 P16 and 7.x before 7.1 P07 allows remote authenticated users to read sensitive object metadata via an RPC command.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securitytracker.com/id/1030743 | vdb entry |
http://www.securityfocus.com/bid/69276 | vdb entry |
http://www.securityfocus.com/archive/1/533162/30/0/threaded | mailing list |
http://secunia.com/advisories/60571 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/95370 | vdb entry |