PT-2012-3917 · Rsa+1 · Rsa Securid Appliance+1

Published

2012-07-13

·

Updated

2020-03-27

·

CVE-2012-2278

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions EMC RSA Authentication Manager versions 7.1 before SP4 P14 RSA SecurID Appliance versions 3.0 before SP4 P14
Description The issue concerns multiple cross-site scripting (XSS) vulnerabilities in the Self-Service Console and Security Console of the affected software. These vulnerabilities allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Recommendations For EMC RSA Authentication Manager versions 7.1 before SP4 P14, update to SP4 P14 or later to resolve the issue. For RSA SecurID Appliance versions 3.0 before SP4 P14, update to SP4 P14 or later to resolve the issue.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2012-2278

Affected Products

Emc Rsa Authentication Manager
Rsa Securid Appliance