CVE-2018-15782

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
16/01/2019
Last modified:
09/10/2019

Description

The Quick Setup component of RSA Authentication Manager versions prior to 8.4 is vulnerable to a relative path traversal vulnerability. A local attacker could potentially provide an administrator with a crafted license that if used during the quick setup deployment of the initial RSA Authentication Manager system, could allow the attacker unauthorized access to that system.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rsa:authentication_manager:*:*:*:*:*:*:*:* 8.4 (excluding)


References to Advisories, Solutions, and Tools