Vulnerabilities > RSA > Securid WEB Agent > 5

DATE CVE VULNERABILITY TITLE RISK
2015-12-23 CVE-2015-6851 Improper Access Control vulnerability in RSA Securid web Agent
EMC RSA SecurID Web Agent before 8.0 allows physically proximate attackers to bypass the privacy-screen protection mechanism by leveraging an unattended workstation and running DOM Inspector.
local
low complexity
rsa CWE-284
7.2
2013-05-22 CVE-2013-0941 Cryptographic Issues vulnerability in RSA products
EMC RSA Authentication API before 8.1 SP1, RSA Web Agent before 5.3.5 for Apache Web Server, RSA Web Agent before 5.3.5 for IIS, RSA PAM Agent before 7.0, and RSA Agent before 6.1.4 for Microsoft Windows use an improper encryption algorithm and a weak key for maintaining the stored data of the node secret for the SecurID Authentication API, which allows local users to obtain sensitive information via cryptographic attacks on this data.
local
low complexity
rsa apache microsoft CWE-310
2.1
2005-05-06 CVE-2005-1471 Unspecified vulnerability in RSA Securid web Agent 5/5.2/5.3
Heap-based buffer overflow in RSA SecurID Web Agent 5, 5.2, and 5.3 allows remote attackers to execute arbitrary code via crafted chunked-encoding data.
network
low complexity
rsa
7.5