CVE-2017-2766

EUVD-2017-11909
EMC Documentum eRoom version 7.4.4, EMC Documentum eRoom version 7.4.4 SP1, EMC Documentum eRoom version prior to 7.4.5 P04, EMC Documentum eRoom version prior to 7.5.0 P01 includes an unverified password change vulnerability that could potentially be exploited by malicious users to compromise the affected system.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 73%
Affected Products (NVD)
VendorProductVersion
emcdocumentum_eroom
7.4.4
emcdocumentum_eroom
7.4.4:sp1
emcdocumentum_eroom
7.4.5
emcdocumentum_eroom
7.4.5:p01
emcdocumentum_eroom
7.4.5:p02
emcdocumentum_eroom
7.4.5:p03
emcdocumentum_eroom
7.5.0
𝑥
= Vulnerable software versions