Security Advisory

CVE-2019-3760

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-09-11 19:17:30
Last updated 2024-09-17 04:18:59
Assigner dell
State PUBLISHED

Description

The RSA Identity Governance and Lifecycle software and RSA Via Lifecycle and Governance products prior to 7.1.0 P08 contain a SQL Injection vulnerability in Workflow Architect. A remote authenticated malicious user could potentially exploit this vulnerability to execute SQL commands on the back-end database to gain unauthorized access to the data by supplying specially crafted input data to the affected application.