← Back

CVE-2013-0941

nvd nist
Published: May 22, 2013Modified: Apr 29, 2026

JSON object

Loading...
2.1
Vector
AV:L/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 3.9 / Impact: 2.9
Source: NVD

Description

EMC RSA Authentication API before 8.1 SP1, RSA Web Agent before 5.3.5 for Apache Web Server, RSA Web Agent before 5.3.5 for IIS, RSA PAM Agent before 7.0, and RSA Agent before 6.1.4 for Microsoft Windows use an improper encryption algorithm and a weak key for maintaining the stored data of the node secret for the SecurID Authentication API, which allows local users to obtain sensitive information via cryptographic attacks on this data.

Affected (4)

4 products
Authentication Api
Securid Web Agent
Authentication Agent
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 8.1
Configuration B
1 platform
Running on/withPlatform Versions
Apache
Http Server
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 5.3.4
Running on/withPlatform Versions
Microsoft
Internet Information Server
All versions
Configuration D
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 6.0
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 6.1.3
Running on/withPlatform Versions
Microsoft
Windows
All versions

Related CWEs

References (2)

Timeline

No history available yet.