Vulnerability Details CVE-2015-4537
Lockbox in EMC Documentum D2 before 4.5 uses a hardcoded passphrase when a server lacks a D2.Lockbox file, which makes it easier for remote authenticated users to decrypt admin tickets by locating this passphrase in a decompiled D2 JAR archive.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 39.6%
CVSS Severity
CVSS v2 Score 3.5
Products affected by CVE-2015-4537
-
cpe:2.3:a:emc:documentum_d2:3.1
-
cpe:2.3:a:emc:documentum_d2:4.0
-
cpe:2.3:a:emc:documentum_d2:4.1
-
cpe:2.3:a:emc:documentum_d2:4.2