CVE-2017-2766

EMC Documentum eRoom version 7.4.4, EMC Documentum eRoom version 7.4.4 SP1, EMC Documentum eRoom version prior to 7.4.5 P04, EMC Documentum eRoom version prior to 7.5.0 P01 includes an unverified password change vulnerability that could potentially be exploited by malicious users to compromise the affected system.
Severity
CRITICAL
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Atk. Vector
NETWORK
Atk. Complexity
LOW
Priv. Required
NONE
Base Score
CVSS 3.x
EPSS Score
Percentile: 59%
VendorProductVersion
emcdocumentum_eroom
7.4.4
emcdocumentum_eroom
7.4.4
emcdocumentum_eroom
7.4.5
emcdocumentum_eroom
7.4.5
emcdocumentum_eroom
7.4.5
emcdocumentum_eroom
7.4.5
emcdocumentum_eroom
7.5.0
𝑥
= Vulnerable software versions