CVE-2024-28058
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/11/2024
Last modified:
21/11/2024
Description
In RSA NetWitness (NW) Platform before 12.5.1, even when an administrator revokes the access of a specific user with an active session, an internal threat actor could impersonate the revoked user and gain unauthorized access to sensitive data.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH



