4.8
CVSSv3

CVE-2018-11073

Published: 28/09/2018 Updated: 27/03/2020
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 4.8 | Impact Score: 2.7 | Exploitability Score: 1.7
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

RSA Authentication Manager versions before 8.3 P3 contain a stored cross-site scripting vulnerability in the Operations Console. A malicious Operations Console administrator could exploit this vulnerability to store arbitrary HTML or JavaScript code through the web interface. When other Operations Console administrators open the affected page, the injected scripts could potentially be executed in their browser.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

emc rsa authentication manager 8.3

rsa authentication manager

Mailing Lists

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 DSA-2018-152: RSA® Authentication Manager Multiple Vulnerabilities Dell EMC Identifier: DSA-2018-152 CVE Identifier: CVE-2018-11073, CVE-2018-11074, CVE-2018-11075 Severity: Medium Severity Rating: View the details below for the individual CVSS Score for each CVE Affected Products: • ...
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 DSA-2018-152: RSA® Authentication Manager Multiple Vulnerabilities Dell EMC Identifier: DSA-2018-152 CVE Identifier: CVE-2018-11073, CVE-2018-11074, CVE-2018-11075 Severity: Medium Severity Rating: View the details below for the individual CVSS Score for each CVE Affected Products: • ...