CVE-2017-2766

EMC Documentum eRoom version 7.4.4, EMC Documentum eRoom version 7.4.4 SP1, EMC Documentum eRoom version prior to 7.4.5 P04, EMC Documentum eRoom version prior to 7.5.0 P01 includes an unverified password change vulnerability that could potentially be exploited by malicious users to compromise the affected system.
References
Link Resource
http://www.securityfocus.com/archive/1/540077/30/0/threaded Patch Third Party Advisory VDB Entry
http://www.securityfocus.com/bid/95893 Third Party Advisory VDB Entry
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:emc:documentum_eroom:7.4.5:p01:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_eroom:7.5.0:*:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_eroom:7.4.5:p03:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_eroom:7.4.4:sp1:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_eroom:7.4.5:*:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_eroom:7.4.5:p02:*:*:*:*:*:*
cpe:2.3:a:emc:documentum_eroom:7.4.4:*:*:*:*:*:*:*

Information

Published : 2017-02-02 23:59

Updated : 2017-03-09 10:40


NVD link : CVE-2017-2766

Mitre link : CVE-2017-2766


JSON object : View

CWE
CWE-640

Weak Password Recovery Mechanism for Forgotten Password

Advertisement

dedicated server usa

Products Affected

emc

  • documentum_eroom