CVE-2008-6886: Medium severity rsa envision vulnerability
RSA EnVision 3.5.0, 3.5.1, 3.5.2, and 3.7.0 does not properly restrict access to unspecified user profile functionality, which allows remote attackers to obtain the administrator password hash and conduct brute force guessing attacks.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-6886?
CVE-2008-6886 is rated as a high severity vulnerability due to the potential for remote attackers to access sensitive information.
How do I fix CVE-2008-6886?
To mitigate CVE-2008-6886, apply the latest patches from RSA for the affected enVision versions 3.5.0, 3.5.1, 3.5.2, and 3.7.0.
What are the affected versions in CVE-2008-6886?
The affected versions for CVE-2008-6886 are RSA enVision 3.5.0, 3.5.1, 3.5.2, and 3.7.0.
What type of attacks can CVE-2008-6886 enable?
CVE-2008-6886 can enable remote attackers to obtain the administrator password hash and conduct brute force guessing attacks.
Is CVE-2008-6886 related to access control?
Yes, CVE-2008-6886 involves improper access control that allows unauthorized users to access user profile functionality.