Known vulnerabilities in RSA Authentication Manager - page 3

Vendor: RSA
Software CPE: cpe:2.3:a:rsa:rsa_authentication_manager:*:*:*:*:*:*:*:*
Total vulnerabilities: 345
Public exploits: 33
Known exploited (KEV): 10
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting RSA Authentication Manager RSA Authentication Manager is affected by 345 known vulnerabilities: 5 critical, 59 high, 154 medium, 127 low Critical High Medium Low

Vulnerabilities (345)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU107520 - Improper input validation
CVE-2025-21587
CWE-20 Medium
No
No
8.8 Patch 1 16.04.2025 SB20250416145
SB20250416146
SB20250416147
and 103 more
#VU103980 - Resource exhaustion
CVE-2024-12133
CWE-400 Medium
No
No
8.7 SP2 Patch 6 14.02.2025 SB2025021428
SB2025021429
SB2025021430
and 78 more
#VU103159 - Improper input validation
CVE-2025-21502
CWE-20 Medium
No
No
8.7 SP2 Patch 6 21.01.2025 SB2025012221
SB2025012222
SB2025012223
and 44 more
#VU103148 - Improper input validation
CVE-2025-21535
CWE-20 High
No
No
8.7 SP2 Patch 6 21.01.2025 SB2025012238
SB2025051252
#VU103150 - Improper input validation
CVE-2025-21549
CWE-20 Medium
No
No
8.7 SP2 Patch 6 21.01.2025 SB2025012238
SB2025051252
#VU102739 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-12747
CWE-362 Low
No
No
8.7 SP2 Patch 6 14.01.2025 SB2025011495
SB2025011504
SB2025011530
and 56 more
#VU102736 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-12088
CWE-22 Medium
No
No
8.7 SP2 Patch 6 14.01.2025 SB2025011495
SB2025011504
SB2025011530
and 65 more
#VU102734 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-12087
CWE-22 Medium
No
No
8.7 SP2 Patch 6 14.01.2025 SB2025011495
SB2025011504
SB2025011530
and 74 more
#VU102732 - Exposure of sensitive information to an unauthorized actor
CVE-2024-12086
CWE-200 Medium
No
No
8.7 SP2 Patch 6 14.01.2025 SB2025011495
SB2025011504
SB2025011530
and 37 more
#VU102730 - Use of Uninitialized Variable
CVE-2024-12085
CWE-457 Medium
No
No
8.7 SP2 Patch 6 14.01.2025 SB2025011495
SB2025011504
SB2025011530
and 92 more
#VU100514 - Improper Authorization
CVE-2024-10979
CWE-285 High
No
No
8.7 SP2 Patch 6 15.11.2024 SB2024111502
SB2024111601
SB2024112245
and 65 more
#VU100513 - Incorrect Privilege Assignment
CVE-2024-10978
CWE-266 Medium
No
No
8.7 SP2 Patch 6 15.11.2024 SB2024111502
SB2024111601
SB2024112245
and 46 more
#VU100512 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2024-10977
CWE-300 Low
No
No
8.7 SP2 Patch 6 15.11.2024 SB2024111502
SB2024111601
SB2024112245
and 34 more
#VU100511 - Improper Privilege Management
CVE-2024-10976
CWE-269 Medium
No
No
8.7 SP2 Patch 6 15.11.2024 SB2024111502
SB2024111601
SB2024112245
and 47 more
#VU98025 - Resource exhaustion
CVE-2024-47554
CWE-400 Medium
No
No
8.7 SP2 Patch 6 03.10.2024 SB2024100352
SB2024100421
SB2024101007
and 132 more
#VU95054 - Memory corruption
CVE-2024-42145
CWE-119 Low
No
No
8.7 SP2 Patch 6 31.07.2024 SB20240731137
SB2024080968
SB2024080969
and 68 more
#VU94762 - Incorrect Authorization
CVE-2024-41110
CWE-863 Medium
No
No
8.7 SP2 Patch 6 26.07.2024 SB2024072641
SB2024080330
SB2024080739
and 39 more
#VU94063 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2024-3596
CWE-327 Medium
Available
No
8.6 Patch 4 Hotfix 1, 8.7 Patch 4 Hotfix 1, 8.7 SP1 Patch 3 Hotfix 1, 8.7 SP2 Patch 3 10.07.2024 SB2024071018
SB2024071019
SB2024071020
and 114 more
#VU89218 - Resource exhaustion
CVE-2024-29857
CWE-400 Medium
No
No
8.7 SP2 Patch 6 07.05.2024 SB2024050731
SB2024061019
SB20240611170
and 69 more
#VU86736 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-23635
CWE-79 Low
No
No
8.7 SP2 Patch 6 22.02.2024 SB2024022233
SB2024041739
SB2024041754
and 6 more


Showing elements 41 - 60 out of 345