First published: Mon Aug 22 2016(Updated: )
The Self-Service Portal in EMC RSA Authentication Manager (AM) Prime Self-Service 3.0 and 3.1 before 3.1 1915.42871 allows remote authenticated users to cause a denial of service (PIN change for an arbitrary user) via a modified token serial number within a PIN change request, related to a "direct object reference vulnerability."
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Emc Authentication Manager Prime | =3.0 | |
Emc Authentication Manager Prime | =3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.