CVE-2018-1247
PoC —CVSS 3.0
7.1 high
EPSS
16%p97
Published
()
Modified
Description
RSA Authentication Manager Security Console, version 8.3 and earlier, contains a XML External Entity (XXE) vulnerability. This could potentially allow admin users to cause a denial of service or extract server data via injecting a maliciously crafted DTD in an XML file submitted to the application.
- Vendors
- rsa
- Products
- authentication manager
- Weakness
- CWE-611
- Vector
- CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
In the news0 stories
No ingested article mentions this CVE yet.