Record summary

CVE-2017-5586 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.

Description

OpenText Documentum D2 (formerly EMC Documentum D2) 4.x allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the BeanShell (bsh) and Apache Commons Collections (ACC) libraries.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBOpenText Documentum D2 - Remote Code ExecutionExploitDB exploitby Andrey B. PanfilovNot analyzed1 file
ExploitDB

PoC details

References

4