6.8
CVSSv2

CVE-2013-6180

Published: 09/12/2013 Updated: 08/01/2014
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

EMC RSA Security Analytics (SA) 10.x prior to 10.3, and RSA NetWitness NextGen 9.8, does not ensure that SA Core requests originate from the SA REST UI, which allows remote malicious users to bypass intended access restrictions by sending a Core request from a web browser or other unintended user agent.

Vulnerable Product Search on Vulmon Subscribe to Product

emc rsa security analytics 10.1

emc rsa security analytics 10.0

emc rsa netwitness nextgen 9.8

emc rsa security analytics 10.2