First published: Wed Aug 20 2014(Updated: )
Cross-site request forgery (CSRF) vulnerability in EMC RSA Archer GRC Platform 5.x before 5.5 SP1 allows remote attackers to hijack the authentication of arbitrary users.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
RSA Archer | =5.3 | |
RSA Archer | =5.4 | |
RSA Archer | =5.4-sp1 | |
RSA Archer | =5.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0641 is considered a high severity vulnerability due to its ability to allow remote attackers to hijack user authentication.
To fix CVE-2014-0641, upgrade to EMC RSA Archer GRC Platform version 5.5 SP1 or later.
CVE-2014-0641 affects EMC RSA Archer GRC Platform versions 5.3, 5.4, and 5.4 SP1.
CVE-2014-0641 is a Cross-site Request Forgery (CSRF) vulnerability.
An attacker exploiting CVE-2014-0641 could hijack the authentication of arbitrary users in the affected systems.