Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In RSA NetWitness (NW) Platform before 12.5.1, even when an administrator revokes the access of a specific user with an active session, an internal threat actor could impersonate the revoked user and gain unauthorized access to sensitive data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
RSA Security NetWitness Platform 安全漏洞
Vulnerability Description
RSA Security NetWitness Platform是美国RSA 安全(RSA Security)公司的一个全面的平台,可加速威胁检测和响应。它收集和分析所有捕获点(日志、数据包、netflow、端点和 IoT)和计算平台(物理、虚拟和云)的数据,通过威胁情报和业务环境丰富数据。 RSA Security NetWitness Platform 12.5.1之前版本存在安全漏洞,该漏洞源于攻击者可以冒充被撤销的用户,并获得对敏感数据未经授权的访问。
CVSS Information
N/A
Vulnerability Type
N/A