Orange Business Services
Vigil@nce Vigil@nce Vigil@nce
we track for your security since 1999
  home presentation vulnerabilities documentation contact  
subscriber area subscriber area
free access free access
The Vigil@nce team watches vulnerabilities impacting your computers, and then offers solutions, a database and tools to correct them.
recent vulnerabilities recent vulnerabilities
tracked products tracked products
RSS feed RSS feed
vulnerable product
Vulnerabilities of SecurID

SecurID vulnerability: user access
When RSA Authentication Agent 7.1 or RSA Authentication Client 3.5 is installed on Windows XP/2003, an attacker can access to the system with only his Windows login/password.

SecurID vulnerability: code execution via DLL Preload
An attacker can create a malicious DLL and invite the victim to open a Software Token file in the same directory, in order to execute code.

SecurID vulnerability: buffer overflow of Progress Server
An attacker can generate a buffer overflow on Progress Server in order to execute code on system.

SecurID vulnerability: buffer overflow of IISWebAgentIF.dll
An attacker can conduct an overflow in IISWebAgentIF.dll in order to run code on server.

Obtention des règles de URLScan
Un attaquant distant peut deviner les règles de filtrage de URLScan, lorsqu'une authentification par RSA SecureID est aussi activée sur le serveur web.

Display other vulnerabilities of SecurID described by Vigil@nce...

Display information about SecurID:



















Copyright 1999-2013 Vigil@nce. Vigil@nce is a service from Orange Business Services. Site map. Legal notice. Version française