RSA enVision 4.x prior to 4 SP4 P3 places cleartext administrative credentials in Task Escalation e-mail messages, which allows remote malicious users to obtain sensitive information by sniffing the network or leveraging access to a recipient mailbox.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
rsa envision 4.0 |