Skip to content
Noroxi

RSA records

116 published records for vendor rsa.

All records

116 records
  • Heap-based buffer overflow in _mprosrv.exe in Progress Software Progress 9.1E and OpenEdge 10.1x, as used by the RSA Authentication Manager

    CriticalCVSS 10.0No exploitEPSS 16%

    rsa · securidJul 15, 2007

  • Stack-based buffer overflow in IISWebAgentIF.dll in RSA Authentication Agent for Web (aka SecurID Web Agent) 5.2 and 5.3 for IIS allows remo

    MediumCVSS 6.4WeaponizedEPSS 55%

    rsa · authentication agent for webDec 31, 2005

  • Buffer overflow in RSAREF2 via the encryption and decryption functions in the RSAREF library.

    CriticalCVSS 10.0Proof of conceptEPSS 2%

    rsa · rsarefDec 1, 1999

  • EMC RSA Authentication Agent for Web: Apache Web Server version 8.0 and RSA Authentication Agent for Web: Apache Web Server version 8.0.1 pr

    CriticalCVSS 9.8No exploitEPSS 3%

    rsa · authentication agent for webNov 29, 2017

  • Command Injection vulnerability

    CriticalCVSS 9.8No exploitEPSS 3%

    rsa · netwitnessMay 15, 2019

  • CVE-2019-3758
    39Monitor

    RSA Archer, versions prior to 6.6 P2 (6.6.0.2), contain an improper authentication vulnerability.

    CriticalCVSS 9.8No exploitEPSS 1%

    rsa · archerSep 18, 2019

  • In RSA Authentication Agent before 7.4.7, service paths and shortcut paths may be vulnerable to path interception if the path has one or mor

    CriticalCVSS 9.8No exploitEPSS 1%

    rsa · authentication agent for windowsNov 24, 2025

  • CVE-2012-0402
    38Monitor

    EMC RSA enVision 4.x before 4.1 Patch 4 uses unspecified hardcoded credentials, which makes it easier for remote attackers to obtain access

    CriticalCVSS 9.3No exploitEPSS 2%

    rsa · envisionMar 20, 2012

  • CVE-2011-4141
    37Monitor

    Untrusted search path vulnerability in EMC RSA SecurID Software Token 4.1 before 4.1.1 allows local users to gain privileges via a Trojan ho

    CriticalCVSS 9.3No exploitEPSS 2%

    rsa · securidDec 16, 2011

  • RSA Archer, versions prior to 6.4.0.1, contain an authorization bypass vulnerability in the REST API.

    HighCVSS 8.8No exploitEPSS 3%

    rsa · archerJul 24, 2018

  • CVE-2014-4627
    36Monitor

    SQL injection vulnerability in EMC RSA Web Threat Detection 4.x before 4.6.1.1 allows remote authenticated users to execute arbitrary SQL co

    HighCVSS 8.8No exploitEPSS 2%

    rsa · web threat detectionNov 7, 2014

  • CVE-2018-1252
    36Monitor

    RSA Web Threat Detection SQL Injection Vulnerability

    HighCVSS 8.8No exploitEPSS 2%

    rsa · web threat detectionJun 5, 2018

  • CVE-2019-3724
    35Monitor

    Authorization Bypass VulnerabilityRSA Netwitness Platform

    HighCVSS 8.8No exploitEPSS 2%

    rsa · netwitness platformMay 15, 2019

  • Archer Platform 6.3 before 6.11 (6.11.0.0) contains an Improper Access Control Vulnerability within SSO ADFS functionality that could potent

    HighCVSS 8.8No exploitEPSS 1%

    rsa · archerMay 26, 2022

  • CVE-2020-5335
    35Monitor

    RSA Archer, versions prior to 6.7 P2 (6.7.0.2), contain a cross-site request forgery vulnerability.

    HighCVSS 8.8No exploitEPSS 0%

    rsa · archerMay 4, 2020

  • CVE-2018-1247
    33Monitor

    RSA Authentication Manager Security Console, version 8.3 and earlier, contains a XML External Entity (XXE) vulnerability.

    HighCVSS 7.1Proof of conceptEPSS 16%

    rsa · authentication managerMay 8, 2018

  • CVE-2020-5384
    33Monitor

    Authentication Bypass Vulnerability RSA MFA Agent 2.0 for Microsoft Windows contains an Authentication Bypass vulnerability.

    HighCVSS 8.4No exploitEPSS 0%

    rsa · multifactor authentication agentJul 31, 2020

  • CVE-2012-0397
    31Monitor

    Buffer overflow in EMC RSA SecurID Software Token Converter before 2.6.1 allows remote attackers to cause a denial of service or possibly ex

    HighCVSS 7.6No exploitEPSS 3%

    rsa · securid software token converterMar 6, 2012

  • CVE-2018-1232
    31Monitor

    RSA Authentication Agent version 8.0.1 and earlier for Web for both IIS and Apache Web Server are impacted by a stack-based buffer overflow

    HighCVSS 7.5No exploitEPSS 3%

    rsa · authentication agent for webMar 30, 2018

  • CVE-2005-1471
    31Monitor

    Heap-based buffer overflow in RSA SecurID Web Agent 5, 5.2, and 5.3 allows remote attackers to execute arbitrary code via crafted chunked-en

    HighCVSS 7.5No exploitEPSS 3%

    rsa · securid web agentMay 6, 2005

  • CVE-2001-1461
    31Monitor

    Directory traversal vulnerability in WebID in RSA Security SecurID 5.0 as used by ACE/Agent for Windows, Windows NT and Windows 2000 allows

    HighCVSS 7.5No exploitEPSS 2%

    rsa · securidOct 22, 2001

  • CVE-2012-0400
    31Monitor

    EMC RSA enVision 4.x before 4.1 Patch 4 does not properly restrict the number of failed authentication attempts, which makes it easier for r

    HighCVSS 7.9No exploitEPSS 1%

    rsa · envisionMar 20, 2012

  • DSA-2018-226: RSA® Authentication Manager Relative Path Traversal Vulnerability

    HighCVSS 7.8No exploitEPSS 0%

    rsa · authentication managerJan 16, 2019

  • CVE-2018-1182
    31Monitor

    An issue was discovered in EMC RSA Identity Governance and Lifecycle versions 7.0.1, 7.0.2, all patch levels (hardware appliance and softwar

    HighCVSS 7.8No exploitEPSS 0%

    emc · rsa identity governance and lifecycleMar 8, 2018

  • CVE-2019-3716
    31Monitor

    Information Exposure Vulnerability

    HighCVSS 7.8No exploitEPSS 0%

    rsa · archer grc platformMar 13, 2019