Lucene search

K
cvelistDellCVELIST:CVE-2017-8004
HistoryJul 17, 2017 - 2:00 p.m.

CVE-2017-8004

2017-07-1714:00:00
dell
www.cve.org
6

AI Score

7.1

Confidence

High

EPSS

0.003

Percentile

67.9%

The EMC RSA Identity Governance and Lifecycle, RSA Via Lifecycle and Governance and RSA IMG products (RSA Identity Governance and Lifecycle versions 7.0.1, 7.0.2, all patch levels; RSA Via Lifecycle and Governance version 7.0, all patch levels; RSA Identity Management and Governance (RSA IMG) versions 6.9.1, all patch levels) allow an application administrator to upload arbitrary files that may potentially contain a malicious code. The malicious file could be then executed on the affected system with the privileges of the user the application is running under.

CNA Affected

[
  {
    "product": "RSA Identity Governance and Lifecycle, RSA Via Lifecycle and Governance, RSA Identity Management and Governance (RSA IMG)",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "RSA Identity Governance and Lifecycle, RSA Via Lifecycle and Governance, RSA Identity Management and Governance (RSA IMG)"
      }
    ]
  }
]

AI Score

7.1

Confidence

High

EPSS

0.003

Percentile

67.9%

Related for CVELIST:CVE-2017-8004