CVE-2017-15276
Last modified
CVE-2017-15276 is a vulnerability of currently unknown severity. OpenText Documentum Content Server (formerly EMC Documentum Content Server) through 7.3 contains the following design gap, which allows an authenticated user to gain superuser privileges: Content Server allows uploading content using batches (TAR archives). When unpacking TAR archives, Content Server fails to verify the contents of an archive, which causes a path traversal vulnerability via symlinks. EPSS estimates a 9.49% chance of exploitation in the next 30 days.
Description
OpenText Documentum Content Server (formerly EMC Documentum Content Server) through 7.3 contains the following design gap, which allows an authenticated user to gain superuser privileges: Content Server allows uploading content using batches (TAR archives). When unpacking TAR archives, Content Server fails to verify the contents of an archive, which causes a path traversal vulnerability via symlinks. Because some files on the Content Server filesystem are security-sensitive, this leads to privilege escalation.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Opentext | Documentum Content Server | <= 7.3 |
References
- http://seclists.org/bugtraq/2017/Oct/19Mailing List, Third Party Advisory, VDB Entry
- http://seclists.org/bugtraq/2017/Oct/19Mailing List, Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-15276?
How severe is CVE-2017-15276?
How do I fix CVE-2017-15276?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-15270The PSFTPd 10.0.4 Build 729 server does not properly escape …
- CVE-2017-15271A use-after-free issue could be triggered remotely in the SF…
- CVE-2017-15272The PSFTPd 10.0.4 Build 729 server stores its configuration …
- CVE-2017-15273Mahara 15.04 before 15.04.15, 16.04 before 16.04.9, 16.10 be…
- CVE-2017-15274security/keys/keyctl.c in the Linux kernel before 4.11.5 doe…
- CVE-2017-15275Samba before 4.7.3 might allow remote attackers to obtain se…7.5
- CVE-2017-15277ReadGIFImage in coders/gif.c in ImageMagick 7.0.6-1 and Grap…
- CVE-2017-15278Cross-Site Scripting (XSS) was discovered in TeamPass before…
- CVE-2017-15279Cross-site scripting (XSS) vulnerability in Umbraco CMS befo…
- CVE-2017-15280XML external entity (XXE) vulnerability in Umbraco CMS befor…
- CVE-2017-15281ReadPSDImage in coders/psd.c in ImageMagick 7.0.7-6 allows r…
- CVE-2017-15284Cross-Site Scripting exists in OctoberCMS 1.0.425 (aka Build…
Are you affected by CVE-2017-15276?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
