EMC RSA Adaptive Authentication On-Premise (AAOP) 6.0.2.1 SP1 Patch 2, SP1 Patch 3, SP2, SP2 Patch 1, and SP3 does not prevent reuse of authentication information during a session, which allows remote authenticated users to bypass intended access restrictions via vectors related to knowledge of the originally used authentication information and unspecified other session information.
2011-08-18T23:55:00.710
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:M/Au:S/C:C/I:P/A:P
6.8
8.5
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | emc | rsa_adaptive_authentication_on-premise | 6.0.2.1 | Yes |
Application | emc | rsa_adaptive_authentication_on-premise | 6.0.2.1 | Yes |
Application | emc | rsa_adaptive_authentication_on-premise | 6.0.2.1 | Yes |
Application | emc | rsa_adaptive_authentication_on-premise | 6.0.2.1 | Yes |
Application | emc | rsa_adaptive_authentication_on-premise | 6.0.2.1 | Yes |