CVE Feed

    Dashboard / CVE / CVE-2017-8004

    CVE-2017-8004

    The EMC RSA Identity Governance and Lifecycle, RSA Via Lifecycle and Governance and RSA IMG products (RSA Identity Governance and Lifecycle versions 7.0.1, 7.0.2, all patch levels; RSA Via Lifecycle and Governance version 7.0, all patch levels; RSA Identity Management and Governance (RSA IMG) versions 6.9.1, all patch levels) allow an application administrator to upload arbitrary files that may potentially contain a malicious code. The malicious file could be then executed on the affected system with the privileges of the user the application is running under.

    Published:Jul 17, 2017
    Last Modified:Apr 20, 2025
    EPS:Jul 17, 2017
    EPSS Score:0.00889
    CVSS Score:7.2

    Affected Products

    Vendor
    Emc
    Product
    Rsa Identity Governance And Lifecycle
    Vendor
    Emc
    Product
    Rsa Identity Management And Governance
    Vendor
    Rsa
    Product
    Rsa Via Lifecycle And Governance

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High