CVE-2024-28058: Rsa Netwitness Platform
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
In RSA NetWitness (NW) Platform before 12.5.1, even when an administrator revokes the access of a specific user with an active session, an internal threat actor could impersonate the revoked user and gain unauthorized access to sensitive data.
Affected products
- Rsa Netwitness Platform: version 12.5.1 only
Published 2024-11-18. Last modified 2026-06-17.