CVE-2012-2281: Rsa Access Manager Agent

Medium severity, CVSS 6.8. EPSS: 0.7% chance of exploitation in the next 30 days.

EMC RSA Access Manager Server 6.x before 6.1 SP4 and RSA Access Manager Agent do not properly validate session tokens after a logout, which might allow remote attackers to conduct replay attacks via unspecified vectors.

Affected products

  • Rsa Access Manager Agent: any version
  • Rsa Access Manager Server: version 6.0 only; version 6.1 only

Published 2012-07-05. Last modified 2026-06-16.