EMC RSA Key Manager (RKM) Appliance 2.7 SP1 before 2.7.1.6, when Firefox 4.x or 5.0 is used, does not properly terminate a user session upon a logout action, which makes it easier for remote attackers to execute arbitrary code by leveraging an unattended workstation.
2011-11-09T23:55:01.537
2025-04-11T00:51:21.963
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Hardware | emc | rsa_key_manager_appliance | 2.7 | Yes |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0 | No |
Application | mozilla | firefox | 4.0.1 | No |
Application | mozilla | firefox | 5.0 | No |