High severity7.8NVD Advisory· Published Mar 8, 2018· Updated Jun 17, 2026
CVE-2018-1182
CVE-2018-1182
Description
An issue was discovered in EMC RSA Identity Governance and Lifecycle versions 7.0.1, 7.0.2, all patch levels (hardware appliance and software bundle deployments only); RSA Via Lifecycle and Governance version 7.0, all patch levels (hardware appliance and software bundle deployments only); RSA Identity Management & Governance (RSA IMG) versions 6.9.0, 6.9.1, all patch levels (hardware appliance and software bundle deployments only). It allows certain OS level users to execute arbitrary scripts with root level privileges.
Affected products
8cpe:2.3:a:emc:rsa_identity_governance_and_lifecycle:7.0.1:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:emc:rsa_identity_governance_and_lifecycle:7.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:emc:rsa_identity_governance_and_lifecycle:7.0.2:*:*:*:*:*:*:*
- (no CPE)range: 7.0.1, 7.0.2 (all patch levels)
cpe:2.3:a:emc:rsa_identity_management_and_governance:6.9.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:emc:rsa_identity_management_and_governance:6.9.0:*:*:*:*:*:*:*
- cpe:2.3:a:emc:rsa_identity_management_and_governance:6.9.1:*:*:*:*:*:*:*
- (no CPE)range: 6.9.0, 6.9.1 (all patch levels)
- cpe:2.3:a:rsa:rsa_via_lifecycle_and_governance:7.0:*:*:*:*:*:*:*
- Range: 7.0 (all patch levels)
Patches
Vulnerability mechanics
References
3- seclists.org/fulldisclosure/2018/Mar/16nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/103317nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1040458nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.