HIGH · 7.5

CVE-2005-2185

eRoom does not set an expiration for Cookies, which allows remote attackers to capture cookies and conduct replay attacks.

Vulnerability Description

eRoom does not set an expiration for Cookies, which allows remote attackers to capture cookies and conduct replay attacks.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
EmcEroom6.0

References

FAQ

What is CVE-2005-2185?

CVE-2005-2185 is a vulnerability with a CVSS score of 7.5 (HIGH). eRoom does not set an expiration for Cookies, which allows remote attackers to capture cookies and conduct replay attacks.

How severe is CVE-2005-2185?

CVE-2005-2185 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2005-2185?

Check the references section above for vendor advisories and patch information. Affected products include: Emc Eroom.