Vulnerabilities (CVE)

Filtered by vendor Emc Subscribe
Filtered by product Eroom
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-2184 1 Emc 1 Eroom 2024-02-04 7.5 HIGH N/A
eRoom 6.x does not properly restrict files that can be attached, which allows remote attackers to execute arbitrary commands via a .lnk file.
CVE-2005-2185 1 Emc 1 Eroom 2024-02-04 7.5 HIGH N/A
eRoom does not set an expiration for Cookies, which allows remote attackers to capture cookies and conduct replay attacks.