7.2
CVSSv3

CVE-2017-8004

Published: 17/07/2017 Updated: 06/08/2021
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

The EMC RSA Identity Governance and Lifecycle, RSA Via Lifecycle and Governance and RSA IMG products (RSA Identity Governance and Lifecycle versions 7.0.1, 7.0.2, all patch levels; RSA Via Lifecycle and Governance version 7.0, all patch levels; RSA Identity Management and Governance (RSA IMG) versions 6.9.1, all patch levels) allow an application administrator to upload arbitrary files that may potentially contain a malicious code. The malicious file could be then executed on the affected system with the privileges of the user the application is running under.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

emc rsa identity management and governance 6.9.1.4

emc rsa identity management and governance 6.9.1.8

emc rsa identity management and governance 6.9.1.9

emc rsa identity management and governance 6.9.1.10

emc rsa identity management and governance 6.9.1.11

emc rsa identity governance and lifecycle 7.0.2.1

emc rsa identity governance and lifecycle 7.0.2

emc rsa identity governance and lifecycle 7.0.1.3

emc rsa identity governance and lifecycle 7.0.1.2

emc rsa identity management and governance 6.9.1.6

emc rsa identity management and governance 6.9.1.13

emc rsa identity management and governance 6.9.1.15

emc rsa identity management and governance 6.9.1.22

emc rsa identity management and governance 6.9.1.24

emc rsa identity governance and lifecycle 7.0.1.1

rsa rsa via lifecycle and governance 7.0.0.5

emc rsa identity management and governance 6.9.1

emc rsa identity management and governance 6.9.1.1

emc rsa identity management and governance 6.9.1.2

emc rsa identity management and governance 6.9.1.3

emc rsa identity management and governance 6.9.1.17

emc rsa identity management and governance 6.9.1.18

emc rsa identity management and governance 6.9.1.19

emc rsa identity management and governance 6.9.1.20

rsa rsa via lifecycle and governance 7.0.0.3

rsa rsa via lifecycle and governance 7.0.0.2

rsa rsa via lifecycle and governance 7.0.0.1

rsa rsa via lifecycle and governance 7.0

emc rsa identity management and governance 6.9.1.5

emc rsa identity management and governance 6.9.1.7

emc rsa identity management and governance 6.9.1.12

emc rsa identity management and governance 6.9.1.14

emc rsa identity management and governance 6.9.1.16

emc rsa identity management and governance 6.9.1.21

emc rsa identity management and governance 6.9.1.23

emc rsa identity governance and lifecycle 7.0.1

rsa rsa via lifecycle and governance 7.0.0.4