CVE-2014-0637: XSS
Cross-site scripting (XSS) vulnerability in the back-office case-management application in RSA Adaptive Authentication (On-Premise) 6.x and 7.x before 7.1 SP0 P2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0637?
CVE-2014-0637 is classified as a moderate severity cross-site scripting (XSS) vulnerability.
How do I fix CVE-2014-0637?
To fix CVE-2014-0637, upgrade to RSA Adaptive Authentication (On-Premise) version 7.1 SP0 P2 or later.
Who is affected by CVE-2014-0637?
CVE-2014-0637 affects remote authenticated users of RSA Adaptive Authentication (On-Premise) versions 6.x and 7.x before 7.1 SP0 P2.
What are the exploitation vectors for CVE-2014-0637?
The exploitation vectors for CVE-2014-0637 are unspecified, allowing arbitrary web script or HTML injection.
What products are known to be impacted by CVE-2014-0637?
RSA Adaptive Authentication (On-Premise) versions 6.0, 6.0.2.1, and 7.0 are known to be impacted by CVE-2014-0637.