Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
EMC RSA SecurID Web Agent before 8.0 allows physically proximate attackers to bypass the privacy-screen protection mechanism by leveraging an unattended workstation and running DOM Inspector.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EMC RSA SecurID Web Agent 权限许可和访问控制漏洞
Vulnerability Description
EMC RSA SecurID Web Agent是美国易安信(EMC)公司的一个双因素身份认证解决方案(RSA SecurID)中的身份认证代理组件,它可截获用户或用户组的远程访问和本地请求,并将其定向到RSA Authentication Manager服务器进行身份认证。 EMC RSA SecurID Web Agent 7.2.1及之前版本中存在安全漏洞。物理位置临近的攻击者可借助DOM Inspector工具利用该漏洞绕过privacy-screen保护机制。
CVSS Information
N/A
Vulnerability Type
N/A