EMC RSA Adaptive Authentication On-Premise (AAOP) 6.0.2.1 SP1 Patch 2, SP1 Patch 3, SP2, SP2 Patch 1, and SP3 does not properly perform forensic evaluation upon receipt of device tokens from mobile apps, which might allow remote attackers to bypass intended application restrictions via a mobile device.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2011-12-14 03:55
Updated : 2012-01-23 20:00
NVD link : CVE-2011-2742
Mitre link : CVE-2011-2742
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
emc
- rsa_adaptive_authentication_on-premise