RSA Authentication Manager versions prior to 8.4 P1 contain an Insecure Credential Management Vulnerability. A malicious Operations Console administrator may be able to obtain the value of a domain password that another Operations Console administrator had set previously and use it for attacks.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Rsa_authentication_manager | Emc | 8.4 (including) | 8.4 (including) |
| Authentication_manager | Rsa | * | 8.4 (excluding) |