First published: Sat Dec 17 2011(Updated: )
Untrusted search path vulnerability in EMC RSA SecurID Software Token 4.1 before 4.1.1 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a Software Token file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
RSA SecurID | =4.1 | |
RSA SecurID | =4.1.0.545 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-4141 is classified with a medium severity level due to the potential for local privilege escalation.
To fix CVE-2011-4141, update the EMC RSA SecurID Software Token to version 4.1.1 or later.
CVE-2011-4141 affects local users of RSA SecurID Software Token version 4.1 and specific builds of 4.1.0.
CVE-2011-4141 is an untrusted search path vulnerability allowing privilege escalation through a Trojan horse DLL.
No, CVE-2011-4141 requires local access to the affected machine to exploit the vulnerability.