CVE-2012-2292: High severity rsa archer vulnerability
The Silverlight cross-domain policy in EMC RSA Archer SmartSuite Framework 4.x and RSA Archer GRC 5.x before 5.2SP1 does not restrict access to the Archer application, which allows remote attackers to bypass the Same Origin Policy via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2292?
CVE-2012-2292 is classified as a medium-severity vulnerability due to its potential for remote exploitation.
How do I fix CVE-2012-2292?
To fix CVE-2012-2292, upgrade to RSA Archer SmartSuite Framework 4.5 or later, or RSA Archer GRC 5.2SP1 or later.
What are the potential impacts of CVE-2012-2292?
The potential impacts of CVE-2012-2292 include unauthorized access to sensitive application data and bypassing of security policies.
Which software versions are affected by CVE-2012-2292?
CVE-2012-2292 affects EMC RSA Archer SmartSuite 4.x and RSA Archer GRC 5.x versions prior to 5.2SP1.
Who can exploit CVE-2012-2292?
CVE-2012-2292 can be exploited by remote attackers who can send requests that bypass the Same Origin Policy.