CVE-2015-6845: Emc Sourceone Email Supervisor

High severity, CVSS 7.5. EPSS: 3.5% chance of exploitation in the next 30 days.

EMC SourceOne Email Supervisor before 7.2 does not properly employ random values for session IDs, which makes it easier for remote attackers to obtain access by guessing an ID.

Affected products

  • Emc Sourceone Email Supervisor: up to and including 7.1

Published 2015-10-18. Last modified 2026-06-17.