EMC
EMC Eroom: vulnerabilidades y CVE
EMC Eroom tiene 7 vulnerabilidades publicadas, 4 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses4
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-25427 | Media (5.4) | 0.29% | — | 23 jul 2026 | Subscriber Broken Access Control in eRoom <= 1.7.1 versions. |
| CVE-2026-25405 | Alta (8.5) | 0.36% | — | 23 jul 2026 | Contributor SQL Injection in eRoom <= 1.7.1 versions. |
| CVE-2025-49919 | Media (5.8) | 0.20% | — | 18 dic 2025 | Insertion of Sensitive Information Into Sent Data vulnerability in DigitalME eRoom eroom-zoom-meetings-webinar allows Retrieve Embedded Sensitive Data.This issue affects eRoom: from n/a through <= 1.5.6. |
| CVE-2025-11760 | Media (5.3) | 0.31% | — | 25 oct 2025 | The eRoom – Webinar & Meeting Plugin for Zoom, Google Meet, Microsoft Teams plugin for WordPress is vulnerable to exposure of sensitive information in all versions up to, and including, 1.5.6. This is due to the plugin… |
| CVE-2024-3275 | Media (4.3) | 0.53% | — | 2 may 2024 | The eRoom – Zoom Meetings & Webinars plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.18 via the search_posts function. This makes it possible for… |
| CVE-2005-2184 | Alta (7.5) | 1.9% | — | 11 jul 2005 | eRoom 6.x does not properly restrict files that can be attached, which allows remote attackers to execute arbitrary commands via a .lnk file. |
| CVE-2005-2185 | Alta (7.5) | 1.4% | — | 11 jul 2005 | eRoom does not set an expiration for Cookies, which allows remote attackers to capture cookies and conduct replay attacks. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.