CVE-2012-0398: Emc Documentum Eroom
High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.
EMC Documentum eRoom before 7.4.4 does not properly validate session cookies, which allows remote attackers to hijack or replay sessions via unspecified vectors.
Affected products
- Emc Documentum Eroom: up to and including 7.4.3; version 7.3.0 only; version 7.4.1 only; version 7.4.2 only
Published 2012-03-15. Last modified 2026-06-16.