Known vulnerabilities in RSA Authentication Manager 8.7 SP2 Patch 5 - page 4
Vendor:
RSA
Software:
RSA Authentication Manager
Version:
8.7 SP2 Patch 5
Software CPE:
cpe:2.3:a:rsa:rsa_authentication_manager:*:*:*:*:*:*:*:*
Website:
https://www.rsa.com/
Total vulnerabilities:
78
Public exploits:
4
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.4
Vulnerabilities by Severity
8.9 Patch 1
8.9
8.7 SP2 Patch 6 Hotfix 1
8.7 SP1 Patch 3 Hotfix 3
8.7 SP1 Patch 3 Hotfix 2
8.8 Patch 3 Hotifx 2
8.8 Patch 3 Hotifx 1
8.8 Patch 3
8.8 Patch 2
8.8 Patch 1
8.6 Patch 4 Hotfix 1
8.6 Patch 4
8.6 Patch 3
8.6 Patch 2
8.6 Patch 1
8.7 Patch 4 Hotfix 1
8.7 SP1 Patch 3 Hotfix 1
8.5 Patch 3
8.5 Patch 2
8.7 SP1 Patch 3
8.7 Patch 4
8.7 Patch 3
8.7 Patch 2
8.7 Patch 1
8.5 Patch 1 Security Update 1
8.5 Patch 1
8.4 Patch 13
8.4 Patch 12
8.1 SP1 Patch 15
8.1 SP1 Patch 14
8.1 SP1 Patch 13
8.1 SP1 Patch 12
8.1 SP1 Patch 11
8.1 SP1 Patch 10
8.1 SP1 Patch 9
8.1 SP1 Patch 8
8.1 SP1 Patch 7
8.1 SP1 Patch 6
8.1 SP1 Patch 5
8.1 SP1 Patch 4
8.1 SP1 Patch 3
8.1 SP1 Patch 2
8.1 SP1 Patch 1
8.2 SP1 Patch 8
8.7 SP1 Patch 1 Hotfix 1
8.7 SP1 Patch 1
8.4 Patch 11
8.4 Patch 10
8.4 Patch 9
8.3 Patch 5
8.3 Patch 4
8.1 SP1
8.4 Patch 8
8.4 Patch 7
8.4 Patch 6
8.4 Patch 5
8.4 Patch 4
8.4 Patch 3
8.4 Patch 2
8.8
8.6
8.5
8.7 SP2 Patch 6
8.7 SP2 Patch 5
8.7 SP2 Patch 4
8.7 SP2 Patch 3
8.7 SP2 Patch 2
8.7 SP2 Patch 1
8.7 SP2
8.7 SP1
8.7
8.4 Patch 1
8.4
8.3
8.3 Patch 3
8.3 Patch 2
8.3 Patch 1
8.2 SP1 Patch 7
8.2 SP1 Patch 6
8.2 SP1 Patch 5
8.2 SP1 Patch 4
8.2 SP1 Patch 3
8.2 SP1 Patch 2
8.2 SP1 Patch 1
8.2
8.1
8.0
7.0
7.1
6.0
6.1
Vulnerabilities (78)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU103980 - Resource exhaustion CVE-2024-12133 |
CWE-400 | Medium | 8.7 SP2 Patch 6 | 14.02.2025 |
SB2025021428 SB2025021429 SB2025021430 and 78 more |
||
| #VU103648 - Exposure of sensitive information to an unauthorized actor CVE-2025-0167 |
CWE-200 | Low | 8.7 SP2 Patch 6 | 05.02.2025 |
SB2025020531 SB2025020601 SB2025020658 and 20 more |
||
| #VU103600 - Covert Timing Channel CVE-2024-13176 |
CWE-385 | Medium | 8.7 SP2 Patch 6 | 04.02.2025 |
SB2025020454 SB2025020456 SB2025020656 and 59 more |
||
| #VU103240 - Heap-based Buffer Overflow CVE-2025-20128 |
CWE-122 | Medium | 8.7 SP2 Patch 6 | 22.01.2025 |
SB2025012288 SB2025012289 SB2025012778 and 5 more |
||
| #VU102990 - Improper input validation CVE-2024-57791 |
CWE-20 | Low | 8.7 SP2 Patch 6, 8.8 Patch 1 | 17.01.2025 |
SB20250117159 SB2025020348 SB2025020351 and 48 more |
||
| #VU100566 - Off-by-one Error CVE-2024-52533 |
CWE-193 | High | 8.7 SP2 Patch 6 | 15.11.2024 |
SB20241115147 SB20241115148 SB20241115149 and 71 more |
||
| #VU100513 - Incorrect Privilege Assignment CVE-2024-10978 |
CWE-266 | Medium | 8.7 SP2 Patch 6 | 15.11.2024 |
SB2024111502 SB2024111601 SB2024112245 and 46 more |
||
| #VU99211 - Improper input validation CVE-2022-48967 |
CWE-20 | Low | 8.7 SP2 Patch 6 | 22.10.2024 |
SB20241022323 SB2024110169 SB2024110170 and 14 more |
||
| #VU99208 - Improper input validation CVE-2022-48962 |
CWE-20 | Low | 8.7 SP2 Patch 6 | 22.10.2024 |
SB20241022320 SB2024110892 SB2024110893 and 16 more |
||
| #VU99207 - Improper input validation CVE-2022-48960 |
CWE-20 | Low | 8.7 SP2 Patch 6 | 22.10.2024 |
SB20241022319 SB2024110892 SB2024110893 and 16 more |
||
| #VU96825 - Out-of-bounds read CVE-2024-20505 |
CWE-125 | Medium | 8.7 SP2 Patch 5, 8.7 SP2 Patch 6 | 05.09.2024 |
SB2024090511 SB20240905109 SB20240905110 and 16 more |
||
| #VU95054 - Memory corruption CVE-2024-42145 |
CWE-119 | Low | 8.7 SP2 Patch 6 | 31.07.2024 |
SB20240731137 SB2024080968 SB2024080969 and 68 more |
||
| #VU89895 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing) CVE-2023-52881 |
CWE-451 | Medium | 8.7 SP2 Patch 4, 8.7 SP2 Patch 6 | 29.05.2024 |
SB2024052952 SB2024070462 SB2024070904 and 69 more |
||
| #VU88800 - Improper input validation CVE-2024-20380 |
CWE-20 | Medium | 8.7 SP2 Patch 6 | 17.04.2024 |
SB20240417143 SB2025020361 SB2025020362 and 2 more |
||
| #VU86243 - NULL Pointer Dereference CVE-2023-46343 |
CWE-476 | Low | 8.7 SP2 Patch 6 | 08.02.2024 |
SB2024020804 SB2024020806 SB2024020877 and 32 more |
||
| #VU79633 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2023-20197 |
CWE-835 | Medium | 8.7 SP1 Patch 3, 8.7 SP2 Patch 1, 8.7 SP2 Patch 6 | 16.08.2023 |
SB20230816163 SB20230821217 SB20230821218 and 21 more |
||
| #VU70499 - Out-of-bounds read CVE-2022-3435 |
CWE-125 | Medium | 8.7 SP2 Patch 6 | 27.12.2022 |
SB2022122717 SB2022122722 SB2022122723 and 48 more |
||
| #VU14162 - Stack-based buffer overflow CVE-2018-14679 |
CWE-121 | Low | 8.7 SP2 Patch 6 | 01.08.2018 |
SB2018080114 SB2018080302 SB2018080606 and 21 more |
Showing elements 61 - 80 out of 78