VYPR
Medium severity4.3NVD Advisory· Published Jan 25, 2018· Updated Jun 17, 2026

CVE-2017-15546

CVE-2017-15546

Description

The Security Console in EMC RSA Authentication Manager 8.2 SP1 P6 and earlier is affected by a blind SQL injection vulnerability. Authenticated malicious users could potentially exploit this vulnerability to read any unencrypted data from the database.

Affected products

9
  • cpe:2.3:a:emc:rsa_authentication_manager:*:*:*:*:*:*:*:*+ 8 more
    • cpe:2.3:a:emc:rsa_authentication_manager:*:*:*:*:*:*:*:*range: <=8.2
    • cpe:2.3:a:emc:rsa_authentication_manager:8.2:sp1:*:*:*:*:*:*
    • cpe:2.3:a:emc:rsa_authentication_manager:8.2:sp1_p1:*:*:*:*:*:*
    • cpe:2.3:a:emc:rsa_authentication_manager:8.2:sp1_p2:*:*:*:*:*:*
    • cpe:2.3:a:emc:rsa_authentication_manager:8.2:sp1_p3:*:*:*:*:*:*
    • cpe:2.3:a:emc:rsa_authentication_manager:8.2:sp1_p4:*:*:*:*:*:*
    • cpe:2.3:a:emc:rsa_authentication_manager:8.2:sp1_p5:*:*:*:*:*:*
    • cpe:2.3:a:emc:rsa_authentication_manager:8.2:sp1_p6:*:*:*:*:*:*
    • (no CPE)range: <=8.2 SP1 P6

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.