Known vulnerabilities in RSA Authentication Manager - page 11

Vendor: RSA
Software CPE: cpe:2.3:a:rsa:rsa_authentication_manager:*:*:*:*:*:*:*:*
Total vulnerabilities: 345
Public exploits: 33
Known exploited (KEV): 10
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting RSA Authentication Manager RSA Authentication Manager is affected by 345 known vulnerabilities: 5 critical, 59 high, 154 medium, 127 low Critical High Medium Low

Vulnerabilities (345)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72432 - Heap-based Buffer Overflow
CVE-2022-48303
CWE-122 High
No
No
8.7 Patch 4 21.02.2023 SB2023022105
SB2023022111
SB2023022112
and 72 more
#VU72337 - Allocation of Resources Without Limits or Throttling
CVE-2023-23916
CWE-770 Medium
No
No
8.7 Patch 4 16.02.2023 SB2023021668
SB2023021670
SB2023021671
and 89 more
#VU72298 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2023-20052
CWE-611 Medium
Available
No
8.7 Patch 3 15.02.2023 SB2023021569
SB2023021570
SB2023022043
and 17 more
#VU72297 - Heap-based Buffer Overflow
CVE-2023-20032
CWE-122 Critical
No
No
8.7 Patch 3 15.02.2023 SB2023021569
SB2023021570
SB2023022043
and 18 more
#VU72250 - Out-of-bounds write
CVE-2023-0767
CWE-787 Medium
No
No
8.7 Patch 4 15.02.2023 SB2023021549
SB2023021551
SB2023021552
and 84 more
#VU71996 - Double Free
CVE-2022-4450
CWE-415 Medium
No
No
8.7 Patch 4 07.02.2023 SB2023020742
SB2023020748
SB2023020771
and 180 more
#VU71316 - Improper input validation
CVE-2023-21837
CWE-20 Medium
No
No
8.7 Patch 3 18.01.2023 SB2023011841
SB2023021764
#VU71317 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-21838
CWE-94 Critical
No
No
8.7 Patch 3 18.01.2023 SB2023011841
SB2023021764
#VU71318 - Improper input validation
CVE-2023-21839
CWE-20 Medium
Available
Exploited
8.7 Patch 3 18.01.2023 SB2023011841
SB2023021764
#VU71319 - Improper input validation
CVE-2023-21841
CWE-20 Medium
No
No
8.7 Patch 3 18.01.2023 SB2023011841
SB2023021764
#VU71314 - Improper input validation
CVE-2022-40153
CWE-20 Medium
No
No
8.7 Patch 3 18.01.2023 SB2023011841
SB2023012670
SB2023021321
and 21 more
#VU71315 - Improper input validation
CVE-2023-21842
CWE-20 Medium
No
No
8.7 Patch 3 18.01.2023 SB2023011841
SB2023021764
#VU69809 - Out-of-bounds write
CVE-2022-42920
CWE-787 High
No
No
8.7 Patch 3 01.12.2022 SB2022120151
SB2022120154
SB2022120628
and 56 more
#VU69674 - Resource exhaustion
CVE-2022-40150
CWE-400 Medium
No
No
8.7 Patch 3 29.11.2022 SB2022112909
SB2022112941
SB2022121101
and 46 more
#VU68962 - Use After Free
CVE-2022-3705
CWE-416 High
No
No
8.7 Patch 3 03.11.2022 SB2022110328
SB2022110335
SB2022112963
and 22 more
#VU68718 - Use After Free
CVE-2022-43680
CWE-416 Medium
No
No
8.7 Patch 3 25.10.2022 SB2022102560
SB2022102566
SB2022103010
and 99 more
#VU64945 - Improper input validation
CVE-2020-10693
CWE-20 Medium
No
No
8.7 Patch 3 06.07.2022 SB2022070611
SB2023011849
SB2020121576
and 5 more
#VU47481 - Improper input validation
CVE-2020-13956
CWE-20 Medium
No
No
8.7 Patch 3, 8.7 SP1 Patch 3, 8.7 SP2 Patch 1 09.10.2020 SB2020100902
SB2020101604
SB2021042104
and 77 more
#VU11268 - Deserialization of Untrusted Data
CVE-2018-7489
CWE-502 High
No
No
8.7 Patch 3 26.03.2018 SB2018021604
SB2018041910
SB2018050306
and 28 more
#VU31436 - Data Handling
CVE-2015-8985
CWE-19 Medium
No
No
8.7 Patch 3 20.03.2017 SB2017032011
SB2019081555
SB2022113036
and 5 more


Showing elements 201 - 220 out of 345