CVE-2016-0918

EMC RSA Identity Management and Governance before 6.8.1 P25 and 6.9.x before 6.9.1 P15 and RSA Via Lifecycle and Governance before 7.0.0 P04 allow remote authenticated users to obtain User Detail Popup information via a modified URL.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 MEDIUM
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
dellCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 39%
VendorProductVersion
emcrsa_identity_management_and_governance
𝑥
≤ 6.8.1
emcrsa_identity_management_and_governance
6.9.0
emcrsa_identity_management_and_governance
6.9.1
emcrsa_via_lifecycle_and_governance
𝑥
≤ 7.0.0
𝑥
= Vulnerable software versions