Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. NetWitness/
  3. NetWitness Threat Detection & Response

NetWitness Threat Detection & Response

AI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Secure coding rating: 0/100How this score is computedA product with no known CVEs starts at a neutral score and climbs the longer it goes without one; a product with known CVEs is penalized by severity instead. This one has 10 known CVEs (vendor-level match — see the CVE list below) and is tracked as ~39 days old in our catalog (a stand-in for real release date, which we don't track). The platform admin controls the formula's weights.

XDR platform combining NDR, EDR, SIEM, SOAR & UEBA for threat detection

by NetWitness · netwitness.com · source ↗

Known CVEs (10)About this listSourced from the public NVD database, matched by vendor name. Shown here at the vendor level — we don't track per-product/version data, so a listed CVE may affect a different product from this vendor, not necessarily this one. “New” means published within the last 30 days. “Actively exploited” means CISA's Known Exploited Vulnerabilities (KEV) catalog confirms real-world exploitation, not just a theoretical severity score.

RSS ⇢
  • CVE-2024-28058 ↗HIGH 7.52024

    In RSA NetWitness (NW) Platform before 12.5.1, even when an administrator revokes the access of a specific user with an active session, an internal threat actor could impersonate the revoked user and …

  • CVE-2024-23169 ↗MEDIUM 4.62024

    The web interface in RSA NetWitness 11.7.2.0 allows Cross-Site Scripting (XSS) via the Where textbox on the Reports screen during new rule creation.

  • CVE-2022-47529 ↗MEDIUM 6.72023

    Insecure Win32 memory objects in Endpoint Windows Agents in RSA NetWitness Platform before 12.2 allow local and admin Windows user accounts to modify the endpoint agent service configuration: to eithe…

  • CVE-2019-3725 ↗CRITICAL 9.82019

    RSA Netwitness Platform versions prior to 11.2.1.1 and RSA Security Analytics versions prior to 10.6.6.1 are vulnerable to a Command Injection vulnerability due to missing input validation in the prod…

  • CVE-2019-3724 ↗MEDIUM 6.52019

    RSA Netwitness Platform versions prior to 11.2.1.1 is vulnerable to an Authorization Bypass vulnerability. A remote low privileged attacker could potentially exploit this vulnerability to gain access …

  • CVE-2018-11061 ↗CRITICAL 9.12018

    RSA NetWitness Platform versions prior to 11.1.0.2 and RSA Security Analytics versions prior to 10.6.6 are vulnerable to a server-side template injection vulnerability due to insecure configuration of…

  • CVE-2014-0643 ↗HIGH 7.62014

    EMC RSA NetWitness before 9.8.5.19 and RSA Security Analytics before 10.2.4 and 10.3.x before 10.3.2, when Kerberos PAM is enabled, do not require a password, which allows remote attackers to bypass a…

  • CVE-2013-6180 ↗MEDIUM 6.82013

    EMC RSA Security Analytics (SA) 10.x before 10.3, and RSA NetWitness NextGen 9.8, does not ensure that SA Core requests originate from the SA REST UI, which allows remote attackers to bypass intended …

  • CVE-2012-4609 ↗MEDIUM 4.32012

    The web interface in EMC RSA NetWitness Informer before 2.0.5.6 allows remote attackers to conduct clickjacking attacks via unspecified vectors.

  • CVE-2012-4608 ↗MEDIUM 6.82012

    Cross-site request forgery (CSRF) vulnerability in the web interface in EMC RSA NetWitness Informer before 2.0.5.6 allows remote attackers to hijack the authentication of arbitrary users.

Materials

0

No datasheets, whitepapers, case studies, videos, or demos linked yet.

Other Endpoint Detection & Response products

see all →
  • 360 High-Risk Vulnerability Immunization Tool V2.0 · 360 Security Group (Qihoo 360)
  • AI EdgeLabs Host Platform Security · AI EdgeLabs
  • AVG AntiVirus FREE · AVG
  • AVG Antivirus Free for Mac · AVG
  • Abatis System · Abatis
  • Absolute Ransomware Response · Absolute
  • Absolute Resilience · Absolute
  • Absolute Resilience for Security · Absolute