CVE-2013-0947: Low severity RSA Authentication Manager vulnerability
Published Jun 7, 2013
·Updated
EMC RSA Authentication Manager 8.0 before P1 allows local users to discover cleartext operating-system passwords, HTTP plug-in proxy passwords, and SNMP communities by reading a (1) log file or (2) configuration file.
Affected Software
1 affected component
RSA Authentication Manager=8.0
Event History
Jun 7, 2013
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-0947?
CVE-2013-0947 is rated as a medium severity vulnerability.
2
How do I fix CVE-2013-0947?
To address CVE-2013-0947, upgrade EMC RSA Authentication Manager to the latest version provided by the vendor.
3
What types of data can be exposed due to CVE-2013-0947?
CVE-2013-0947 allows local users to discover cleartext operating-system passwords, HTTP plug-in proxy passwords, and SNMP communities.
4
Is CVE-2013-0947 a remote or local vulnerability?
CVE-2013-0947 is a local vulnerability, affecting local users with access to log and configuration files.
5
Which version of RSA Authentication Manager is affected by CVE-2013-0947?
CVE-2013-0947 affects RSA Authentication Manager version 8.0 before patch P1.