Vulnerability Description
In RSA NetWitness (NW) Platform before 12.5.1, even when an administrator revokes the access of a specific user with an active session, an internal threat actor could impersonate the revoked user and gain unauthorized access to sensitive data.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://community.netwitness.com/t5/netwitness-platform-online/tkb-p/netwitness-
- https://community.netwitness.com/t5/netwitness-platform-product/nw-2024-06-netwi
FAQ
What is CVE-2024-28058?
CVE-2024-28058 is a vulnerability with a CVSS score of 7.5 (HIGH). In RSA NetWitness (NW) Platform before 12.5.1, even when an administrator revokes the access of a specific user with an active session, an internal threat actor could impersonate the revoked user and ...
How severe is CVE-2024-28058?
CVE-2024-28058 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-28058?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.