CVE-2015-0522: XSS
Cross-site scripting (XSS) vulnerability in EMC RSA Certificate Manager (RCM) before 6.9 build 558 and RSA Registration Manager (RRM) before 6.9 build 558 allows remote attackers to inject arbitrary web script or HTML via vectors related to the email address parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0522?
CVE-2015-0522 has a medium severity rating due to the potential for cross-site scripting attacks.
How do I fix CVE-2015-0522?
To fix CVE-2015-0522, upgrade EMC RSA Certificate Manager and RSA Registration Manager to version 6.9 build 558 or later.
What are the affected versions for CVE-2015-0522?
CVE-2015-0522 affects EMC RSA Certificate Manager versions up to 6.8 and RSA Registration Manager versions up to 6.8.
Can CVE-2015-0522 be exploited remotely?
Yes, CVE-2015-0522 can be exploited remotely by attackers who can inject malicious scripts through the email address parameter.
What type of vulnerability is CVE-2015-0522?
CVE-2015-0522 is classified as a cross-site scripting (XSS) vulnerability.