Vulnerabilities > Lifesize > Lifesize Room Appliance Software
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2011-09-02 | CVE-2011-2763 | Improper Input Validation vulnerability in Lifesize Room Appliance Software 4.7.18/Lsrm13.5.3 The web interface on the LifeSize Room appliance LS_RM1_3.5.3 (11) and 4.7.18 allows remote attackers to execute arbitrary commands via a modified request to the LSRoom_Remoting.doCommand function in gateway.php. | 7.5 |
2011-09-02 | CVE-2011-2762 | Improper Authentication vulnerability in Lifesize Room Appliance Software Lsrm13.5.3 The web interface on the LifeSize Room appliance LS_RM1_3.5.3 (11) allows remote attackers to bypass authentication via unspecified data associated with a "true" authentication status, related to AMF data and the LSRoom_Remoting.authenticate function in gateway.php. | 5.0 |