CVE-2019-3724: Authorization Bypass VulnerabilityRSA Netwitness Platform
Published May 15, 2019
·Updated
RSA Netwitness Platform versions prior to 11.2.1.1 is vulnerable to an Authorization Bypass vulnerability. A remote low privileged attacker could potentially exploit this vulnerability to gain access to administrative information including credentials.
Affected Software
2 affected components
RSA Netwitness Platform<11.2.1.1
RSA Security Analytics<10.6.6.1
Event History
May 15, 2019
CVE Published
via MITRE·03:45 PM
Data Sourced
via MITRE·03:45 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-3724.
2
What is the severity of CVE-2019-3724?
The severity of CVE-2019-3724 is high with a CVSS score of 8.8.
3
Which RSA Netwitness Platform versions are affected by CVE-2019-3724?
RSA Netwitness Platform versions prior to 11.2.1.1 are affected by CVE-2019-3724.
4
What is the impact of CVE-2019-3724?
CVE-2019-3724 allows a remote low privileged attacker to gain access to administrative information, including credentials.
5
Is there a fix available for CVE-2019-3724?
Yes, updating RSA Netwitness Platform to version 11.2.1.1 or newer will fix the vulnerability.