Vulnerabilities > Lifesize > Lifesize Room Appliance

DATE CVE VULNERABILITY TITLE RISK
2011-09-02 CVE-2011-2763 Improper Input Validation vulnerability in Lifesize Room Appliance Software 4.7.18/Lsrm13.5.3
The web interface on the LifeSize Room appliance LS_RM1_3.5.3 (11) and 4.7.18 allows remote attackers to execute arbitrary commands via a modified request to the LSRoom_Remoting.doCommand function in gateway.php.
network
low complexity
lifesize CWE-20
7.5
2011-09-02 CVE-2011-2762 Improper Authentication vulnerability in Lifesize Room Appliance Software Lsrm13.5.3
The web interface on the LifeSize Room appliance LS_RM1_3.5.3 (11) allows remote attackers to bypass authentication via unspecified data associated with a "true" authentication status, related to AMF data and the LSRoom_Remoting.authenticate function in gateway.php.
network
low complexity
lifesize CWE-287
5.0