← volver
CVE-2018-1254

CVE-2018-1254

EPSS 2.0%
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS EPSS 2.0%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
21 jun 2018Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
RSA Authentication Manager Security Console, versions 8.3 P1 and earlier, contains a reflected cross-site scripting vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by tricking a victim Security Console administrator to supply malicious HTML or JavaScript code to a vulnerable web application, which is then reflected back to the victim and executed by the web browser.

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →