Known vulnerabilities in RSA Authentication Manager 8.7 SP2 Patch 5 - page 4

Vendor: RSA
Version: 8.7 SP2 Patch 5
Software CPE: cpe:2.3:a:rsa:rsa_authentication_manager:*:*:*:*:*:*:*:*
Total vulnerabilities: 78
Public exploits: 4
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting RSA Authentication Manager version 8.7 SP2 Patch 5 RSA Authentication Manager 8.7 SP2 Patch 5 is affected by 78 vulnerabilities: 3 critical, 13 high, 37 medium, 25 low Critical High Medium Low

Vulnerabilities (78)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU103980 - Resource exhaustion
CVE-2024-12133
CWE-400 Medium
No
No
8.7 SP2 Patch 6 14.02.2025 SB2025021428
SB2025021429
SB2025021430
and 78 more
#VU103648 - Exposure of sensitive information to an unauthorized actor
CVE-2025-0167
CWE-200 Low
No
No
8.7 SP2 Patch 6 05.02.2025 SB2025020531
SB2025020601
SB2025020658
and 20 more
#VU103600 - Covert Timing Channel
CVE-2024-13176
CWE-385 Medium
No
No
8.7 SP2 Patch 6 04.02.2025 SB2025020454
SB2025020456
SB2025020656
and 59 more
#VU103240 - Heap-based Buffer Overflow
CVE-2025-20128
CWE-122 Medium
No
No
8.7 SP2 Patch 6 22.01.2025 SB2025012288
SB2025012289
SB2025012778
and 5 more
#VU102990 - Improper input validation
CVE-2024-57791
CWE-20 Low
No
No
8.7 SP2 Patch 6, 8.8 Patch 1 17.01.2025 SB20250117159
SB2025020348
SB2025020351
and 48 more
#VU100566 - Off-by-one Error
CVE-2024-52533
CWE-193 High
No
No
8.7 SP2 Patch 6 15.11.2024 SB20241115147
SB20241115148
SB20241115149
and 71 more
#VU100513 - Incorrect Privilege Assignment
CVE-2024-10978
CWE-266 Medium
No
No
8.7 SP2 Patch 6 15.11.2024 SB2024111502
SB2024111601
SB2024112245
and 46 more
#VU99211 - Improper input validation
CVE-2022-48967
CWE-20 Low
No
No
8.7 SP2 Patch 6 22.10.2024 SB20241022323
SB2024110169
SB2024110170
and 14 more
#VU99208 - Improper input validation
CVE-2022-48962
CWE-20 Low
No
No
8.7 SP2 Patch 6 22.10.2024 SB20241022320
SB2024110892
SB2024110893
and 16 more
#VU99207 - Improper input validation
CVE-2022-48960
CWE-20 Low
No
No
8.7 SP2 Patch 6 22.10.2024 SB20241022319
SB2024110892
SB2024110893
and 16 more
#VU96825 - Out-of-bounds read
CVE-2024-20505
CWE-125 Medium
No
No
8.7 SP2 Patch 5, 8.7 SP2 Patch 6 05.09.2024 SB2024090511
SB20240905109
SB20240905110
and 16 more
#VU95054 - Memory corruption
CVE-2024-42145
CWE-119 Low
No
No
8.7 SP2 Patch 6 31.07.2024 SB20240731137
SB2024080968
SB2024080969
and 68 more
#VU89895 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-52881
CWE-451 Medium
No
No
8.7 SP2 Patch 4, 8.7 SP2 Patch 6 29.05.2024 SB2024052952
SB2024070462
SB2024070904
and 69 more
#VU88800 - Improper input validation
CVE-2024-20380
CWE-20 Medium
No
No
8.7 SP2 Patch 6 17.04.2024 SB20240417143
SB2025020361
SB2025020362
and 2 more
#VU86243 - NULL Pointer Dereference
CVE-2023-46343
CWE-476 Low
No
No
8.7 SP2 Patch 6 08.02.2024 SB2024020804
SB2024020806
SB2024020877
and 32 more
#VU79633 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2023-20197
CWE-835 Medium
No
No
8.7 SP1 Patch 3, 8.7 SP2 Patch 1, 8.7 SP2 Patch 6 16.08.2023 SB20230816163
SB20230821217
SB20230821218
and 21 more
#VU70499 - Out-of-bounds read
CVE-2022-3435
CWE-125 Medium
No
No
8.7 SP2 Patch 6 27.12.2022 SB2022122717
SB2022122722
SB2022122723
and 48 more
#VU14162 - Stack-based buffer overflow
CVE-2018-14679
CWE-121 Low
No
No
8.7 SP2 Patch 6 01.08.2018 SB2018080114
SB2018080302
SB2018080606
and 21 more


Showing elements 61 - 80 out of 78