EMC RSA SecurID Web Agent before 8.0 allows physically proximate attackers to bypass the privacy-screen protection mechanism by leveraging an unattended workstation and running DOM Inspector.
References
Configurations
History
21 Nov 2024, 02:35
Type | Values Removed | Values Added |
---|---|---|
References | () http://packetstormsecurity.com/files/135013/RSA-SecurID-Web-Agent-Authentication-Bypass.html - | |
References | () http://seclists.org/bugtraq/2015/Dec/115 - | |
References | () http://www.securityfocus.com/bid/79646 - | |
References | () http://www.securitytracker.com/id/1034510 - |
Information
Published : 2015-12-23 03:59
Updated : 2025-04-12 10:46
NVD link : CVE-2015-6851
Mitre link : CVE-2015-6851
CVE.ORG link : CVE-2015-6851
JSON object : View
Products Affected
rsa
- securid_web_agent
CWE
CWE-284
Improper Access Control