CVE Vulnerabilities

CVE-2005-2185

Published: Jul 11, 2005 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

eRoom does not set an expiration for Cookies, which allows remote attackers to capture cookies and conduct replay attacks.

Affected Software

Name Vendor Start Version End Version
Eroom Emc 6.0 (including) 6.0 (including)
Eroom Emc 6.0.1 (including) 6.0.1 (including)
Eroom Emc 6.0.2 (including) 6.0.2 (including)
Eroom Emc 6.0.3 (including) 6.0.3 (including)
Eroom Emc 6.0.4 (including) 6.0.4 (including)
Eroom Emc 6.0.5 (including) 6.0.5 (including)
Eroom Emc 6.0.6 (including) 6.0.6 (including)
Eroom Emc 6.0.7 (including) 6.0.7 (including)

References