RSA Adaptive Authentication (On-Premise) 6.0.2.1 up to and including 7.1 P3, when using device binding in a Challenge SOAP call or using the RSA Adaptive Authentication Integration Adapters with Out-of-Band Phone (Authentify) functionality, conducts permanent device binding even when authentication fails, which allows remote malicious users to bypass authentication.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
emc rsa adaptive authentication on-premise 6.0.2.1 |
||
emc rsa adaptive authentication on-premise 7.1 |
||
emc rsa adaptive authentication on-premise 7.0 |