CVE-2017-2766

EMC Documentum eRoom version 7.4.4, EMC Documentum eRoom version 7.4.4 SP1, EMC Documentum eRoom version prior to 7.4.5 P04, EMC Documentum eRoom version prior to 7.5.0 P01 includes an unverified password change vulnerability that could potentially be exploited by malicious users to compromise the affected system.
References
Link Resource
http://www.securityfocus.com/archive/1/540077/30/0/threaded Patch Third Party Advisory VDB Entry
http://www.securityfocus.com/bid/95893 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:emc:documentum_eroom:7.4.4:*:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_eroom:7.4.4:sp1:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_eroom:7.4.5:*:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_eroom:7.4.5:p01:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_eroom:7.4.5:p02:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_eroom:7.4.5:p03:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_eroom:7.5.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-02-03 07:59

Updated : 2024-02-04 19:11


NVD link : CVE-2017-2766

Mitre link : CVE-2017-2766

CVE.ORG link : CVE-2017-2766


JSON object : View

Products Affected

emc

  • documentum_eroom
CWE
CWE-640

Weak Password Recovery Mechanism for Forgotten Password