EMC RSA Security SiteKey issues challenge-bypass tokens that persist forever without a cancellation interface for end users, which makes it easier for attackers to bypass one stage of authentication by stealing and replaying a token.
References
Configurations
History
21 Nov 2024, 00:24
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.cr-labs.com/publications/SiteKey-20060718.pdf - | |
References | () http://www.cr-labs.com/publications/WhySiteKey-20060824.pdf - |
Information
Published : 2007-04-30 23:19
Updated : 2025-04-09 00:30
NVD link : CVE-2006-7200
Mitre link : CVE-2006-7200
CVE.ORG link : CVE-2006-7200
JSON object : View
Products Affected
emc
- rsa_security_sitekey
CWE