Vulnerability Details CVE-2018-1182
An issue was discovered in EMC RSA Identity Governance and Lifecycle versions 7.0.1, 7.0.2, all patch levels (hardware appliance and software bundle deployments only); RSA Via Lifecycle and Governance version 7.0, all patch levels (hardware appliance and software bundle deployments only); RSA Identity Management & Governance (RSA IMG) versions 6.9.0, 6.9.1, all patch levels (hardware appliance and software bundle deployments only). It allows certain OS level users to execute arbitrary scripts with root level privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.8%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 7.2
Products affected by CVE-2018-1182
-
cpe:2.3:a:emc:rsa_identity_governance_and_lifecycle:7.0.1
-
cpe:2.3:a:emc:rsa_identity_governance_and_lifecycle:7.0.2
-
cpe:2.3:a:emc:rsa_identity_management_and_governance:6.9.0
-
cpe:2.3:a:emc:rsa_identity_management_and_governance:6.9.1
-
cpe:2.3:a:rsa:rsa_via_lifecycle_and_governance:7.0