First published: Tue Mar 24 2015(Updated: )
EMC Documentum xCelerated Management System (xMS) 1.1 before P14 stores cleartext Windows Service credentials in a batch file during Documentum Platform and xCelerated Composition Platform (xCP) provisioning, which allows local users to obtain sensitive information by reading a file.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
EMC Documentum xCelerated Management System | =1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0527 is considered to have a medium severity due to the exposure of sensitive information.
To fix CVE-2015-0527, it is recommended to upgrade to a patched version of EMC Documentum xCelerated Management System after P14.
CVE-2015-0527 exposes cleartext Windows Service credentials stored in a batch file.
CVE-2015-0527 affects local users of EMC Documentum xCelerated Management System version 1.1 before P14.
Yes, the exposure of Windows Service credentials in CVE-2015-0527 could potentially lead to unauthorized access to system services.