CVE-2017-5003: XSS
EMC RSA Identity Governance and Lifecycle versions 7.0.1, 7.0.2 (all patch levels); RSA Via Lifecycle and Governance version 7.0 (all patch levels); and RSA Identity Management and Governance (IMG) version 6.9.1 (all patch levels) have Reflected Cross Site Scripting vulnerabilities that could potentially be exploited by malicious users to compromise an affected system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-5003?
CVE-2017-5003 has a medium severity level due to its potential for reflected cross-site scripting attacks.
How do I fix CVE-2017-5003?
To fix CVE-2017-5003, apply the latest patches released by EMC for the affected versions of RSA Identity Governance and Lifecycle.
What versions are affected by CVE-2017-5003?
CVE-2017-5003 affects EMC RSA Identity Governance and Lifecycle versions 7.0.1, 7.0.2, RSA Via Lifecycle and Governance version 7.0, and RSA Identity Management and Governance version 6.9.1.
What type of vulnerability is CVE-2017-5003?
CVE-2017-5003 is classified as a reflected cross-site scripting (XSS) vulnerability.
What can attackers do with CVE-2017-5003?
Attackers exploiting CVE-2017-5003 could potentially execute arbitrary scripts in the context of the user's browser.