CVE-2015-4535: Emc Documentum Content Server

High severity, CVSS 7.5. EPSS: 1.9% chance of exploitation in the next 30 days.

Java Method Server (JMS) in EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02, when __debug_trace__ is configured, allows remote authenticated users to gain super-user privileges by leveraging the ability to read a log file containing a login ticket.

Affected products

  • Emc Documentum Content Server: version 6.7 only; version 7.0 only; version 7.1 only; version 7.2 only

Published 2015-08-20. Last modified 2026-06-17.