CyberSec.Space Logo
CVEブラウザに戻る

CVE-2013-0941

LOW
2.1
CVSS Severity Score
EPSS Score0.1350%
EPSS Percentile3.30th
Published2013年5月22日
Last Modified2026年4月29日

Vulnerability Description

EMC RSA Authentication API before 8.1 SP1, RSA Web Agent before 5.3.5 for Apache Web Server, RSA Web Agent before 5.3.5 for IIS, RSA PAM Agent before 7.0, and RSA Agent before 6.1.4 for Microsoft Windows use an improper encryption algorithm and a weak key for maintaining the stored data of the node secret for the SecurID Authentication API, which allows local users to obtain sensitive information via cryptographic attacks on this data.

Affected Platforms (CPE)

📦
Rsa

Authentication Api

<= 8.1
📦
Rsa

Securid Web Agent

<= 5.3.4
📦
Rsa

Pluggable Authentication Module Agent

<= 6.0
📦
Rsa

Authentication Agent

<= 6.1.3

References & Advisories

関連する脆弱性情報