Rsa

Authentication Agent For Web

8 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.21%
  • Published 30.03.2018 21:29:01
  • Last modified 21.11.2024 03:59:25

RSA Authentication Agent version 8.0.1 and earlier for Web for both IIS and Apache Web Server are impacted by a stack-based buffer overflow which may occur when handling certain malicious web cookies that have invalid formats. The attacker could expl...

  • EPSS 0.32%
  • Published 30.03.2018 21:29:01
  • Last modified 21.11.2024 03:59:26

RSA Authentication Agent version 8.0.1 and earlier for Web for both IIS and Apache Web Server are affected by a cross-site scripting vulnerability. The attackers could potentially exploit this vulnerability to execute arbitrary HTML or JavaScript cod...

  • EPSS 0.11%
  • Published 30.03.2018 21:29:01
  • Last modified 21.11.2024 03:59:26

RSA Authentication Agent version 8.0.1 and earlier for Web for IIS is affected by a problem where access control list (ACL) permissions on a Windows Named Pipe were not sufficient to prevent access by unauthorized users. The attacker with local acces...

  • EPSS 2.68%
  • Published 29.11.2017 18:29:00
  • Last modified 20.04.2025 01:37:25

EMC RSA Authentication Agent for Web: Apache Web Server version 8.0 and RSA Authentication Agent for Web: Apache Web Server version 8.0.1 prior to Build 618 have a security vulnerability that could potentially lead to authentication bypass.

  • EPSS 0.06%
  • Published 24.09.2010 19:00:04
  • Last modified 11.04.2025 00:51:21

Directory traversal vulnerability in RSA Authentication Agent 7.0 before P2 for Web allows remote attackers to read unspecified data via unknown vectors.

Exploit
  • EPSS 74.09%
  • Published 31.12.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

Stack-based buffer overflow in IISWebAgentIF.dll in RSA Authentication Agent for Web (aka SecurID Web Agent) 5.2 and 5.3 for IIS allows remote attackers to execute arbitrary code via a long url parameter in the Redirect method.

Exploit
  • EPSS 0.88%
  • Published 27.10.2005 10:02:00
  • Last modified 03.04.2025 01:03:51

Cross-site scripting (XSS) vulnerability in RSA Authentication Agent for Web 5.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the image parameter in a GetPic operation.

  • EPSS 1%
  • Published 14.04.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Cross-site scripting (XSS) vulnerability in IISWebAgentIF.dll in the RSA Authentication Agent for Web 5.2 allows remote attackers to inject arbitrary web script or HTML via the postdata parameter.