EMC RSA enVision 4.x before 4.1 Patch 4 does not properly restrict the number of failed authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack.
2012-03-20T15:55:00.760
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.9 (HIGH)
AV:A/AC:M/Au:N/C:C/I:C/A:C
5.5
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | rsa | envision | 4.0 | Yes |
Application | rsa | envision | 4.0 | Yes |
Application | rsa | envision | 4.0 | Yes |
Application | rsa | envision | 4.0 | Yes |
Application | rsa | envision | 4.1 | Yes |