CVE-2017-4998: CSRF
EMC RSA Archer 5.4.1.3, 5.5.3.1, 5.5.2.3, 5.5.2, 5.5.1.3.1, 5.5.1.1 is potentially affected by a cross-site request forgery vulnerability. A remote low privileged attacker may potentially exploit the vulnerability to execute unauthorized requests on behalf of the victim, using the authenticated user's privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-4998?
CVE-2017-4998 has a low severity rating due to the potential for a low privileged attacker to exploit it.
How do I fix CVE-2017-4998?
To fix CVE-2017-4998, upgrade your EMC RSA Archer to patched versions beyond 5.5.3.1.
Who is affected by CVE-2017-4998?
Users of EMC RSA Archer versions 5.4.1.3, 5.5.1.1, 5.5.1.3.1, 5.5.2, 5.5.2.3, and 5.5.3.1 are affected by CVE-2017-4998.
What type of vulnerability is CVE-2017-4998?
CVE-2017-4998 is a cross-site request forgery (CSRF) vulnerability.
Can CVE-2017-4998 be exploited remotely?
Yes, CVE-2017-4998 can be exploited by a remote low privileged attacker.