VendorsRSAweb_threat_detectionany version
Vulnerabilities

RSA Web Threat Detection any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2014-4627
SQL injection vulnerability in EMC RSA Web Threat Detection 4.x before 4.6.1.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
Published 2014-11-07 · Modified
8.8EPSS 0.023
CVE-2018-1252
RSA Web Threat Detection SQL Injection Vulnerability
Published 2018-06-05 · Modified
8.8EPSS 0.020
CVE-2015-4548
EMC RSA Web Threat Detection before 5.1 SP1 allows local users to obtain root privileges by leveraging access to a service account and writing commands to a service configuration file.
Published 2015-10-12 · Modified
7.2EPSS 0.005
CVE-2015-0541
Cross-site request forgery (CSRF) vulnerability in EMC RSA Web Threat Detection before 5.1 allows remote attackers to hijack the authentication of arbitrary users.
Published 2015-06-05 · Modified
6.8EPSS 0.009
CVE-2015-4547
EMC RSA Web Threat Detection before 5.1 SP1 stores a cleartext AnnoDB password in a configuration file, which allows remote authenticated users to obtain sensitive information by reading this file.
Published 2015-10-12 · Modified
4.0EPSS 0.021