The Self-Service Portal in EMC RSA Authentication Manager (AM) Prime Self-Service 3.0 and 3.1 before 3.1 1915.42871 allows remote authenticated users to cause a denial of service (PIN change for an arbitrary user) via a modified token serial number within a PIN change request, related to a "direct object reference vulnerability."
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2016-08-22T10:00:00

Updated: 2024-08-05T22:38:41.049Z

Reserved: 2015-12-17T00:00:00

Link: CVE-2016-0915

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2016-08-22T10:59:00.137

Modified: 2024-11-21T02:42:37.750

Link: CVE-2016-0915

cve-icon Redhat

No data.