VendorsRSAauthentication_managerany version
Vulnerabilities

RSA Authentication Manager any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2018-15782
DSA-2018-226: RSA® Authentication Manager Relative Path Traversal Vulnerability
Published 2019-01-16 · Modified
7.8EPSS 0.004
CVE-2019-3711
DSA-2019-038: RSA® Authentication Manager Insecure Credential Management Vulnerability
Published 2019-03-13 · Modified
7.2EPSS 0.020
CVE-2018-1247
RSA Authentication Manager Security Console, version 8.3 and earlier, contains a XML External Entity (XXE) vulnerability. This could potentially allow admin users to cause a denial of service or extract server data via injecting a maliciously crafted DTD in an XML file submitted to the application.
Published 2018-05-08 · Modified
7.11 PoCEPSS 0.160
CVE-2018-11073
DSA-2018-152: RSA® Authentication Manager Multiple Vulnerabilities
Published 2018-09-28 · Modified
6.5EPSS 0.011
CVE-2018-11074
DSA-2018-152: RSA® Authentication Manager Multiple Vulnerabilities
Published 2018-09-28 · Modified
6.1EPSS 0.020
CVE-2018-1248
RSA Authentication Manager Security Console, Operation Console and Self-Service Console, version 8.3 and earlier, is affected by a Host header injection vulnerability. This could allow a remote attacker to potentially poison HTTP cache and subsequently redirect users to arbitrary web domains.
Published 2018-05-08 · Modified
6.1EPSS 0.014
CVE-2018-11075
DSA-2018-152: RSA® Authentication Manager Multiple Vulnerabilities
Published 2018-09-28 · Modified
5.8EPSS 0.015
CVE-2019-18574
RSA Authentication Manager software versions prior to 8.4 P8 contain a stored cross-site scripting vulnerability in the Security Console. A malicious Security Console administrator could exploit this vulnerability to store arbitrary HTML or JavaScript code through the web interface which could then be included in a report. When other Security Console administrators open the affected report, the injected scripts could potentially be executed in their browser.
Published 2019-12-03 · Modified
4.8EPSS 0.006