RSA Authentication Manager 8.7 False Positive Security Vulnerabilities
Article Number
Applies To
RSA Product/Service Type: Authentication Manager
RSA Version/Condition: 8.x
CVE Identifier(s)
Article Summary
This article is not limited to vulnerabilities mentioned under CVE ID but others with same categories stated above related to java Deployments.
Link to Advisories
Alert Impact
Not Exploitable
Alert Impact Explanation
Resolution
This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security.Are not exploitable within an RSA Authentication Manager since it is a server-side application that loads and runs only trusted code (not code from web applets, web sites, etc). The RSA Authentication Manager is not a client application running untrusted code or relying upon the Java sandbox for security.
Hence any concerns regarding vulnerabilities with the above description are regarded as false positives with RSA Authentication Manager.
Disclaimer
Related Articles
RSA Authentication Manager 8.2 False Positive Security Vulnerabilities 584Number of Views RSA Identity Governance & Lifecycle Security Vulnerability for Operating System SLES 11 SP3 - False Positive 63Number of Views RSA Authentication Manager 8.7 SP1 False Positive Security Vulnerabilities 133Number of Views RSA Authentication Manager 8.x Security Vulnerabilities for Apache Struts 2 - False Positive 93Number of Views RSA Authentication Manager Security Vulnerability CVE-2022-42003,CVE-2022-45047,CVE-2023-21894 3Number of Views
Trending Articles
How to recover the Application and AFX after an unexpected database failure in RSA Identity Governance & Lifecycle Troubleshooting AFX Connector issues in RSA Identity Governance & Lifecycle RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA Release Notes for RSA Authentication Manager 8.8 RSA Authentication Manager Upgrade Process
Don't see what you're looking for?