First published: Wed Feb 06 2013(Updated: )
EMC RSA Archer SmartSuite Framework 4.x and RSA Archer GRC 5.x before 5.2SP1 allow remote attackers to conduct clickjacking attacks via a crafted web page.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
EMC RSA Archer | =4.3 | |
EMC RSA Archer | =4.5 | |
EMC RSA Archer | =5.0 | |
EMC RSA Archer | =5.1 | |
EMC RSA Archer | =5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2294 is considered a moderate severity vulnerability due to its potential for clickjacking attacks.
To fix CVE-2012-2294, upgrade to RSA Archer GRC version 5.2SP1 or later.
CVE-2012-2294 affects EMC RSA Archer SmartSuite 4.x and RSA Archer GRC 5.x prior to version 5.2SP1.
CVE-2012-2294 allows remote attackers to conduct clickjacking attacks via a crafted web page.
There is no official workaround for CVE-2012-2294; upgrading is recommended as the primary mitigation.