CVE-2013-0931
 
Severity Score
5.4
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
EMC RSA Authentication Agent 7.1.x before 7.1.2 on Windows does not enforce the Quick PIN Unlock timeout feature, which allows physically proximate attackers to bypass the passcode requirement for a screensaved session by entering a PIN after timeout expiration.
EMC RSA Authentication Agent v7.1.x anterior a v7.1.2 sobre Windows no refuerza la característica Quick PIN Unlock, lo que permitiría a atacantes próximos físicamente evitar la restricción de código de acceso cuando se inicia el protector de pantalla, introduciendo el PIN después del tiempo de expiración.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2013-01-09 CVE Reserved
- 2013-03-01 CVE Published
- 2024-09-16 CVE Updated
- 2024-09-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-16: Configuration
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
http://archives.neohapsis.com/archives/bugtraq/2013-03/0001.html | Mailing List |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Rsa Search vendor "Rsa" | Authentication Agent For Windows Search vendor "Rsa" for product "Authentication Agent For Windows" | 7.1 Search vendor "Rsa" for product "Authentication Agent For Windows" and version "7.1" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows 2003 Server Search vendor "Microsoft" for product "Windows 2003 Server" | * | - |
Safe
|
Rsa Search vendor "Rsa" | Authentication Agent For Windows Search vendor "Rsa" for product "Authentication Agent For Windows" | 7.1 Search vendor "Rsa" for product "Authentication Agent For Windows" and version "7.1" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Xp Search vendor "Microsoft" for product "Windows Xp" | * | - |
Safe
|
Rsa Search vendor "Rsa" | Authentication Agent For Windows Search vendor "Rsa" for product "Authentication Agent For Windows" | 7.1.1 Search vendor "Rsa" for product "Authentication Agent For Windows" and version "7.1.1" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows 2003 Server Search vendor "Microsoft" for product "Windows 2003 Server" | * | - |
Safe
|
Rsa Search vendor "Rsa" | Authentication Agent For Windows Search vendor "Rsa" for product "Authentication Agent For Windows" | 7.1.1 Search vendor "Rsa" for product "Authentication Agent For Windows" and version "7.1.1" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Xp Search vendor "Microsoft" for product "Windows Xp" | * | - |
Safe
|