cvedb.io
CVE-2018-1233
MEDIUM · CVSS 6.1
EPSS exploitation probability: 0%
Published 2018-03-30T21:29:01.747 · Last modified 2026-06-17T01:50:47.100

Summary

RSA Authentication Agent version 8.0.1 and earlier for Web for both IIS and Apache Web Server are affected by a cross-site scripting vulnerability. The attackers could potentially exploit this vulnerability to execute arbitrary HTML or JavaScript code in the user's browser session in the context of the affected website.

Affected products

rsa — authentication_agent_for_web

Does this affect you?

Add your gear to cvedb and we'll alert you only when rsa ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.