CVE-2013-0941: Low severity rsa authentication agent api for c vulnerability
EMC RSA Authentication API before 8.1 SP1, RSA Web Agent before 5.3.5 for Apache Web Server, RSA Web Agent before 5.3.5 for IIS, RSA PAM Agent before 7.0, and RSA Agent before 6.1.4 for Microsoft Windows use an improper encryption algorithm and a weak key for maintaining the stored data of the node secret for the SecurID Authentication API, which allows local users to obtain sensitive information via cryptographic attacks on this data.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0941?
CVE-2013-0941 is categorized as a high severity vulnerability due to improper encryption and weak key management.
How do I fix CVE-2013-0941?
To fix CVE-2013-0941, upgrade the affected RSA products to their respective patched versions as specified by the vendor.
Which RSA products are affected by CVE-2013-0941?
CVE-2013-0941 affects several RSA products including Authentication API prior to 8.1 SP1 and various versions of RSA Web Agent.
What kind of attack can exploit CVE-2013-0941?
CVE-2013-0941 can be exploited by attackers to gain unauthorized access to sensitive stored data due to weak encryption.
Is my version of RSA Authentication API vulnerable to CVE-2013-0941?
If you are using RSA Authentication API versions earlier than 8.1 SP1, it is vulnerable to CVE-2013-0941.