Description
eRoom 6.x does not properly restrict files that can be attached, which allows remote attackers to execute arbitrary commands via a .lnk file.
References (2)
Core 2
Core References
Mailing List mailing-list
x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=112069267700034&w=2
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/15940
Scores
EPSS
0.0090
EPSS Percentile
76.0%
Details
Status
published
Products (8)
emc/eroom
6.0
emc/eroom
6.0.1
emc/eroom
6.0.2
emc/eroom
6.0.3
emc/eroom
6.0.4
emc/eroom
6.0.5
emc/eroom
6.0.6
emc/eroom
6.0.7
Published
Jul 11, 2005
Tracked Since
Feb 18, 2026