CVE-2014-2505

EMC RSA Archer GRC Platform 5.x - Remote Code Execution

Title source: manual
STIX 2.1

Description

EMC RSA Archer GRC Platform 5.x before 5.5 SP1 allows remote attackers to trigger the download of arbitrary code, and consequently change the product's functionality, via unspecified vectors.

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/95360
Third Party Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2014-08/0097.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1030738
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/69290

Scores

EPSS 0.0030
EPSS Percentile 53.7%

Details

Status published
Products (3)
emc/rsa_archer_egrc 5.3
emc/rsa_archer_egrc 5.4 (2 CPE variants)
emc/rsa_archer_egrc 5.5
Published Aug 20, 2014
Tracked Since Feb 18, 2026