AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-14527

HIGH · CVSS 8.8 EPSS 1.38%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-09-28 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.8. It affects Windows. It may be remotely exploitable. Exploitation may require the attacker to be authenticated. It may lead to a denial-of-service condition.

CVE
CVE-2017-14527
Severity
HIGH
CVSS
8.8
EPSS
1.38%
Windows

Original NVD Description

Multiple XML external entity (XXE) vulnerabilities in the OpenText Documentum Webtop 6.8.0160.0073 allow remote authenticated users to list the contents of arbitrary directories, read arbitrary files, cause a denial of service, or, on Windows, obtain Documentum user hashes via a (1) crafted DTD, involving unspecified XML structures in a request to xda/com/documentum/ucf/server/transport/impl/GAIRConnector or crafted XML file in a MediaProfile file (2) import or (3) check in.

Related CVEs

Other vulnerabilities affecting the same vendor(s)