CVE-2014-0643
16.05.2014, 11:11
EMC RSA NetWitness before 9.8.5.19 and RSA Security Analytics before 10.2.4 and 10.3.x before 10.3.2, when Kerberos PAM is enabled, do not require a password, which allows remote attackers to bypass authentication by leveraging knowledge of a valid account name.Enginsight
Vendor | Product | Version |
---|---|---|
emc | rsa_netwitness | 𝑥 < 9.8.5.19 |
emc | rsa_security_analytics | 10.2 ≤ 𝑥 < 10.2.4 |
emc | rsa_security_analytics | 10.3 ≤ 𝑥 < 10.3.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration