CVE-2018-1254
CVE-2018-1254
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 2.0%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
21 jun 2018Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
RSA Authentication Manager Security Console, versions 8.3 P1 and earlier, contains a reflected cross-site scripting vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by tricking a victim Security Console administrator to supply malicious HTML or JavaScript code to a vulnerable web application, which is then reflected back to the victim and executed by the web browser.
Productos afectados
RSA · RSA Authentication Manager¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →