CVE Vulnerabilities

CVE-2005-2185

Published: Jul 11, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

eRoom does not set an expiration for Cookies, which allows remote attackers to capture cookies and conduct replay attacks.

Affected Software

NameVendorStart VersionEnd Version
EroomEmc6.0 (including)6.0 (including)
EroomEmc6.0.1 (including)6.0.1 (including)
EroomEmc6.0.2 (including)6.0.2 (including)
EroomEmc6.0.3 (including)6.0.3 (including)
EroomEmc6.0.4 (including)6.0.4 (including)
EroomEmc6.0.5 (including)6.0.5 (including)
EroomEmc6.0.6 (including)6.0.6 (including)
EroomEmc6.0.7 (including)6.0.7 (including)

References