Security Advisory

CVE-2019-3759

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-09-11 19:17:30
Last updated 2024-09-17 01:06:30
Assigner dell
CVSS score 6.4
State PUBLISHED

Description

The RSA Identity Governance and Lifecycle software and RSA Via Lifecycle and Governance products prior to 7.1.0 P08 contain a code injection vulnerability. A remote authenticated malicious user could potentially exploit this vulnerability to run custom Groovy scripts to gain limited access to view or modify information on the Workflow system.