EMC RSA Authentication Manager 8.x < 8.1 Patch 6 Unspecified URI Redirection

medium Nessus Plugin ID 84163

Synopsis

The remote host is affected by a URI redirection vulnerability.

Description

The remote host is running a version of EMC RSA Authentication Manager 8 prior to 8.1 Patch 6. It is, therefore, affected by an unspecified URI redirection vulnerability. An attacker can exploit this vulnerability to redirect users to arbitrary websites.

Solution

Upgrade to 8.1 Patch 6 or later.

See Also

http://www.nessus.org/u?ed80f2b3

Plugin Details

Severity: Medium

ID: 84163

File Name: emc_rsa_am_8_1_p6.nasl

Version: 1.4

Type: remote

Family: Misc.

Published: 6/12/2015

Updated: 11/15/2018

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.9

CVSS v2

Risk Factor: Medium

Base Score: 5.8

Temporal Score: 4.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Information

CPE: cpe:/a:rsa:authentication_manager

Required KB Items: Host/local_checks_enabled, Host/EMC/AM/Version

Exploit Ease: No known exploits are available

Patch Publication Date: 12/12/2014

Vulnerability Publication Date: 12/12/2014

Reference Information

CVE: CVE-2014-2516

BID: 71664