Bypassing Passcode Requirement in EMC RSA Authentication Agent 7.1.x on Windows

Bypassing Passcode Requirement in EMC RSA Authentication Agent 7.1.x on Windows

CVE-2013-0931 · MEDIUM Severity

AV:A/AC:M/AU:N/C:P/I:P/A:P

EMC RSA Authentication Agent 7.1.x before 7.1.2 on Windows does not enforce the Quick PIN Unlock timeout feature, which allows physically proximate attackers to bypass the passcode requirement for a screensaved session by entering a PIN after timeout expiration.

Learn more about our Physical Security Assessment.