6.8

CVE-2011-2741

EMC RSA Adaptive Authentication On-Premise (AAOP) 6.0.2.1 SP1 Patch 2, SP1 Patch 3, SP2, SP2 Patch 1, and SP3 does not properly implement Device Recovery and Device Identification, which might allow remote attackers to bypass intended security restrictions on a (1) previously non-registered device or (2) registered device by sending unspecified "data elements."

Data is provided by the National Vulnerability Database (NVD)
EmcRsa Adaptive Authentication On-premise Version6.0.2.1 Updatesp1_patch2
EmcRsa Adaptive Authentication On-premise Version6.0.2.1 Updatesp1_patch3
EmcRsa Adaptive Authentication On-premise Version6.0.2.1 Updatesp2
EmcRsa Adaptive Authentication On-premise Version6.0.2.1 Updatesp2_patch1
EmcRsa Adaptive Authentication On-premise Version6.0.2.1 Updatesp3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.22% 0.411
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P