1.5
CVSSv2

CVE-2010-3321

Published: 07/10/2010 Updated: 10/10/2018
CVSS v2 Base Score: 1.5 | Impact Score: 2.9 | Exploitability Score: 2.7
VMScore: 134
Vector: AV:L/AC:M/Au:S/C:P/I:N/A:N

Vulnerability Summary

RSA Authentication Client 2.0.x, 3.0, and 3.5.x prior to 3.5.3 does not properly handle a SENSITIVE or NON-EXTRACTABLE tag on a secret key object that is stored on a SecurID 800 authenticator, which allows local users to bypass intended access restrictions and read keys via unspecified PKCS#11 API requests.

Vulnerable Product Search on Vulmon Subscribe to Product

rsa authentication client 2.0

rsa authentication client 3.0

rsa authentication client 3.5.1