RSA Authentication Manager versions prior to 8.4 P1 contain an Insecure Credential Management Vulnerability. A malicious Operations Console administrator may be able to obtain the value of a domain password that another Operations Console administrator had set previously and use it for attacks.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Rsa_authentication_manager | Emc | 8.4 (including) | 8.4 (including) |
Authentication_manager | Rsa | * | 8.4 (excluding) |