Improper Session Termination in EMC RSA Key Manager Appliance 2.7 SP1

Improper Session Termination in EMC RSA Key Manager Appliance 2.7 SP1

CVE-2011-2740 · HIGH Severity

AV:N/AC:M/AU:N/C:C/I:C/A:C

EMC RSA Key Manager (RKM) Appliance 2.7 SP1 before 2.7.1.6, when Firefox 4.x or 5.0 is used, does not properly terminate a user session upon a logout action, which makes it easier for remote attackers to execute arbitrary code by leveraging an unattended workstation.

Learn more about our User Device Pen Test.