CVE-2017-2766: Critical severity EMC Documentum eRoom vulnerability
EMC Documentum eRoom version 7.4.4, EMC Documentum eRoom version 7.4.4 SP1, EMC Documentum eRoom version prior to 7.4.5 P04, EMC Documentum eRoom version prior to 7.5.0 P01 includes an unverified password change vulnerability that could potentially be exploited by malicious users to compromise the affected system.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
EMC Documentum eRoomto a version that resolves this vulnerability.Fixed in 7.4.5 P04 - Upgrade
Upgrade
EMC Documentum eRoomto a version that resolves this vulnerability.Fixed in 7.5.0 P01
Event History
Frequently Asked Questions
What is the severity of CVE-2017-2766?
CVE-2017-2766 has a medium severity rating due to its potential exploitation by malicious users.
How do I fix CVE-2017-2766?
To fix CVE-2017-2766, update your EMC Documentum eRoom installation to version 7.4.5 P04 or later.
Which versions of EMC Documentum eRoom are affected by CVE-2017-2766?
CVE-2017-2766 affects EMC Documentum eRoom versions 7.4.4, 7.4.4 SP1, and versions prior to 7.4.5 P04.
What type of vulnerability is CVE-2017-2766?
CVE-2017-2766 is an unverified password change vulnerability that could allow unauthorized access.
Can CVE-2017-2766 be exploited remotely?
Yes, CVE-2017-2766 can be exploited remotely by malicious users to compromise the affected system.