Vulnerabilities (CVE)

Filtered by vendor Emc Subscribe
Filtered by product Eroom
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-2185 1 Emc 1 Eroom 2023-12-10 7.5 HIGH N/A
eRoom does not set an expiration for Cookies, which allows remote attackers to capture cookies and conduct replay attacks.
CVE-2005-2184 1 Emc 1 Eroom 2023-12-10 7.5 HIGH N/A
eRoom 6.x does not properly restrict files that can be attached, which allows remote attackers to execute arbitrary commands via a .lnk file.