EMC Documentum xCelerated Management System (xMS) 1.1 before P14 stores cleartext Windows Service credentials in a batch file during Documentum Platform and xCelerated Composition Platform (xCP) provisioning, which allows local users to obtain sensitive information by reading a file.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0527
Reference (s):
- BUGTRAQ:20150325 ESA-2015-044: EMC Documentum xMS Sensitive Information Disclosure Vulnerability
- URL: http://seclists.org/bugtraq/2015/Mar/134
- http://packetstormsecurity.com/files/130959/EMC-Documentum-xMS-Sensitive-Information-Disclosure.html

