AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2015-4524

MEDIUM · CVSS 6.5 EPSS 2.40%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2015-07-04 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.5. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.

CVE
CVE-2015-4524
Severity
MEDIUM
CVSS
6.5
EPSS
2.40%

Original NVD Description

Unrestricted file upload vulnerability in EMC Documentum WebTop 6.7SP1 before P31, 6.7SP2 before P23, and 6.8 before P01; Documentum Administrator 6.7SP1 before P31, 6.7SP2 before P23, 7.0 before P18, 7.1 before P15, and 7.2 before P01; Documentum Digital Assets Manager 6.5SP6 before P25; Documentum Web Publishers 6.5 SP7 before P25; and Documentum Task Space 6.7SP1 before P31 and 6.7SP2 before P23 allows remote authenticated users to execute arbitrary code by uploading a file to the backend Content Server.