Known vulnerabilities in RSA Authentication Manager - page 15

Vendor: RSA
Software CPE: cpe:2.3:a:rsa:rsa_authentication_manager:*:*:*:*:*:*:*:*
Total vulnerabilities: 345
Public exploits: 33
Known exploited (KEV): 10
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting RSA Authentication Manager RSA Authentication Manager is affected by 345 known vulnerabilities: 5 critical, 59 high, 154 medium, 127 low Critical High Medium Low

Vulnerabilities (345)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU48018 - Improper input validation
CVE-2020-14825
CWE-20 High
No
No
8.5 Patch 2 29.10.2020 SB2020102950
SB2021012149
#VU48019 - Improper input validation
CVE-2020-14859
CWE-20 High
No
No
8.5 Patch 2 29.10.2020 SB2020102950
SB2021012149
#VU48017 - Improper input validation
CVE-2020-14841
CWE-20 High
No
No
8.5 Patch 2 29.10.2020 SB2020102950
SB2021012149
#VU47197 - Heap-based Buffer Overflow
CVE-2019-17006
CWE-122 High
No
No
8.4 Patch 11 30.09.2020 SB2019090221
SB2020093089
SB2020062437
and 19 more
#VU34461 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-5346
CWE-79 Low
No
No
8.4 Patch 11 15.04.2020 SB2020041526
#VU26648 - Use After Free
CVE-2019-19527
CWE-416 Low
No
No
8.4 Patch 10 07.04.2020 SB2019120322
SB2020040728
SB2020073031
and 8 more
#VU25598 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2019-20445
CWE-113 Medium
No
No
8.4 Patch 11 26.02.2020 SB2020012928
SB2020022601
SB2020031305
and 33 more
#VU25355 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2019-20444
CWE-444 Medium
No
No
8.4 Patch 11 14.02.2020 SB2020012928
SB2020022601
SB2020031305
and 36 more
#VU24450 - Exposure of sensitive information to an unauthorized actor
CVE-2019-19533
CWE-200 Low
No
No
8.4 Patch 10 21.01.2020 SB2019111821
SB2020071534
SB2020110442
and 1 more
#VU24440 - Out-of-bounds write
CVE-2019-19532
CWE-787 Low
No
No
8.4 Patch 10 21.01.2020 SB2019111819
SB2021031802
SB2021031803
and 7 more
#VU24171 - Use After Free
CVE-2019-19524
CWE-416 Low
No
No
8.4 Patch 10 09.01.2020 SB2019120336
SB2020010835
SB2020051291
and 4 more
#VU24168 - Improper input validation
CVE-2019-17195
CWE-20 Medium
No
No
8.4 Patch 11, 8.5 Patch 3 09.01.2020 SB2019101519
SB2020010921
SB2020040218
and 20 more
#VU30562 - Use After Free
CVE-2019-19523
CWE-416 High
No
No
8.4 Patch 10 03.12.2019 SB2019120340
SB2020092914
SB2020092915
and 1 more
#VU30563 - Use After Free
CVE-2019-19525
CWE-416 High
No
No
8.4 Patch 10 03.12.2019 SB2019120341
SB2020022625
#VU30566 - Use After Free
CVE-2019-19530
CWE-416 High
No
No
8.4 Patch 10 03.12.2019 SB2019120342
SB2020092914
SB2020092915
and 1 more
#VU30567 - Use After Free
CVE-2019-19531
CWE-416 High
No
No
8.4 Patch 10 03.12.2019 SB2019120343
SB2020022625
#VU30568 - Exposure of sensitive information to an unauthorized actor
CVE-2019-19535
CWE-200 Medium
No
No
8.4 Patch 10 03.12.2019 SB2019120343
SB2020022625
#VU30569 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2019-19537
CWE-362 Low
No
No
8.4 Patch 10 03.12.2019 SB2019120342
SB2020110442
SB2020092914
and 2 more
#VU22825 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2019-16869
CWE-444 Medium
No
No
8.4 Patch 11 18.11.2019 SB2019092616
SB2019111903
SB2019112016
and 30 more
#VU21530 - Resource Management Errors
CVE-2019-12625
CWE-399 Medium
No
No
8.4 Patch 10 03.10.2019 SB2019100401
SB2020032674
SB2019082334
and 4 more


Showing elements 281 - 300 out of 345