Stored Cross-Site Scripting Vulnerability in RSA Authentication Manager
CVE-2020-5340
4.8MEDIUM
What is CVE-2020-5340?
RSA Authentication Manager prior to version 8.4 P10 is susceptible to a stored cross-site scripting vulnerability within the Security Console. This security flaw allows an administrator with elevated privileges to embed arbitrary HTML or JavaScript code through the web interface. If other administrators attempt to modify the default security domain mapping, the malicious scripts can be executed in their browsers, potentially compromising their accounts and sensitive data.
Affected Version(s)
RSA Authentication Manager < unspecified