An issue was discovered in EMC RSA Identity Governance and Lifecycle versions 7.0.1, 7.0.2, all patch levels (hardware appliance and software bundle deployments only); RSA Via Lifecycle and Governance version 7.0, all patch levels (hardware appliance and software bundle deployments only); RSA Identity Management & Governance (RSA IMG) versions 6.9.0, 6.9.1, all patch levels (hardware appliance and software bundle deployments only). It allows certain OS level users to execute arbitrary scripts with root level privileges.
References
Link Resource
http://seclists.org/fulldisclosure/2018/Mar/16 Mailing List Third Party Advisory
http://www.securityfocus.com/bid/103317 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1040458 Third Party Advisory VDB Entry
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: dell

Published: 2018-03-08T15:00:00

Updated: 2018-03-09T10:57:01

Reserved: 2017-12-06T00:00:00


Link: CVE-2018-1182

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-03-08T15:29:00.517

Modified: 2021-08-06T13:12:07.190


Link: CVE-2018-1182

JSON object: View

cve-icon Redhat Information

No data.

CWE