CVE-2012-2281: Medium severity rsa access manager vulnerability
EMC RSA Access Manager Server 6.x before 6.1 SP4 and RSA Access Manager Agent do not properly validate session tokens after a logout, which might allow remote attackers to conduct replay attacks via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2281?
CVE-2012-2281 is classified as a medium severity vulnerability due to its potential for replay attacks.
How do I fix CVE-2012-2281?
To address CVE-2012-2281, it is recommended to upgrade RSA Access Manager Server to version 6.1 SP4 or later.
What software is affected by CVE-2012-2281?
CVE-2012-2281 affects EMC RSA Access Manager Server 6.x prior to 6.1 SP4 and RSA Access Manager Agent.
What kind of attack is possible with CVE-2012-2281?
CVE-2012-2281 may allow remote attackers to conduct replay attacks due to improper session token validation after logout.
Is there a workaround for CVE-2012-2281 if I cannot upgrade?
Currently, there are no known workarounds for CVE-2012-2281 other than applying the recommended upgrade.