VYPR

Web Threat Detection

Sign in to watch

by Rsa

CVEs (4)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2014-4627Hig0.578.80.02Nov 7, 2014SQL injection vulnerability in EMC RSA Web Threat Detection 4.x before 4.6.1.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
CVE-2015-45480.000.00Oct 12, 2015EMC RSA Web Threat Detection before 5.1 SP1 allows local users to obtain root privileges by leveraging access to a service account and writing commands to a service configuration file.
CVE-2015-45470.000.01Oct 12, 2015EMC RSA Web Threat Detection before 5.1 SP1 stores a cleartext AnnoDB password in a configuration file, which allows remote authenticated users to obtain sensitive information by reading this file.
CVE-2015-05410.000.00Jun 5, 2015Cross-site request forgery (CSRF) vulnerability in EMC RSA Web Threat Detection before 5.1 allows remote attackers to hijack the authentication of arbitrary users.