AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-14526

HIGH · CVSS 8.8 EPSS 1.16%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-09-28 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2017-14526
Severity
HIGH
CVSS
8.8
EPSS
1.16%
Windows

Original NVD Description

Multiple XML external entity (XXE) vulnerabilities in the OpenText Documentum Administrator 7.2.0180.0055 allow remote authenticated users to list the contents of arbitrary directories, read arbitrary files, cause a denial of service, or, on Windows, obtain Documentum user hashes via a (1) crafted DTD, involving unspecified XML structures in a request to xda/com/documentum/ucf/server/transport/impl/GAIRConnector or crafted XML file in a MediaProfile file (2) import or (3) check in.

Related CVEs

Other vulnerabilities affecting the same vendor(s)