CVE-2014-0639: XSS
Multiple cross-site scripting (XSS) vulnerabilities in EMC RSA Archer 5.x before GRC 5.4 SP1 P3 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0639?
CVE-2014-0639 is classified as a moderate severity vulnerability because it allows for cross-site scripting attacks that can lead to unauthorized script execution.
How do I fix CVE-2014-0639?
To fix CVE-2014-0639, upgrade to RSA Archer version 5.4 SP1 P3 or later, where the vulnerabilities are addressed.
What types of attacks are possible with CVE-2014-0639?
CVE-2014-0639 allows attackers to perform cross-site scripting (XSS) attacks, potentially leading to data theft or session hijacking.
Which versions of EMC RSA Archer are affected by CVE-2014-0639?
CVE-2014-0639 affects EMC RSA Archer versions 5.0 to 5.4 SP1 P2.
Can CVE-2014-0639 be exploited remotely?
Yes, CVE-2014-0639 can be exploited remotely by attackers through malicious script injection via unspecified vectors.