CVE-2018-1182: Emc Rsa Identity Governance And Lifecycle
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
An issue was discovered in EMC RSA Identity Governance and Lifecycle versions 7.0.1, 7.0.2, all patch levels (hardware appliance and software bundle deployments only); RSA Via Lifecycle and Governance version 7.0, all patch levels (hardware appliance and software bundle deployments only); RSA Identity Management & Governance (RSA IMG) versions 6.9.0, 6.9.1, all patch levels (hardware appliance and software bundle deployments only). It allows certain OS level users to execute arbitrary scripts with root level privileges.
Affected products
- Emc Rsa Identity Governance And Lifecycle: version 7.0.1 only; version 7.0.2 only
- Emc Rsa Identity Management And Governance: version 6.9.0 only; version 6.9.1 only
- Rsa Rsa Via Lifecycle And Governance: version 7.0 only
Published 2018-03-08. Last modified 2026-06-17.