RSA Authentication Agent version 8.0.1 and earlier for Web for IIS is affected by a problem where access control list (ACL) permissions on a Windows Named Pipe were not sufficient to prevent access by unauthorized users. The attacker with local access to the system can exploit this vulnerability to read configuration properties for the authentication agent.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2018-03-30T21:00:00Z
Updated: 2024-09-16T18:44:10.804Z
Reserved: 2017-12-06T00:00:00
Link: CVE-2018-1234
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-03-30T21:29:01.807
Modified: 2024-11-21T03:59:26.200
Link: CVE-2018-1234
Redhat
No data.