Vulnerabilities > EMC > Sourceone Email Supervisor > Medium

DATE CVE VULNERABILITY TITLE RISK
2015-10-18 CVE-2015-6846 Credentials Management vulnerability in EMC Sourceone Email Supervisor
EMC SourceOne Email Supervisor before 7.2 uses hardcoded encryption keys, which makes it easier for attackers to obtain access by examining how a program's code conducts cryptographic operations.
network
emc CWE-255
6.8
2015-10-18 CVE-2015-6844 Cross-site Scripting vulnerability in EMC Sourceone Email Supervisor
Cross-site scripting (XSS) vulnerability in Reviewer in EMC SourceOne Email Supervisor before 7.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
emc CWE-79
4.3
2015-10-18 CVE-2015-6843 Information Exposure vulnerability in EMC Sourceone Email Supervisor
Reviewer in EMC SourceOne Email Supervisor before 7.2 does not properly limit attempts to authenticate, which makes it easier for remote attackers to obtain access via a brute-force approach.
network
low complexity
emc CWE-200
5.0