CVE-2018-1248: Rsa Authentication Manager

Medium severity, CVSS 6.1. EPSS: 1.4% chance of exploitation in the next 30 days.

RSA Authentication Manager Security Console, Operation Console and Self-Service Console, version 8.3 and earlier, is affected by a Host header injection vulnerability. This could allow a remote attacker to potentially poison HTTP cache and subsequently redirect users to arbitrary web domains.

Affected products

  • Rsa Authentication Manager: up to and including 8.3

Published 2018-05-08. Last modified 2026-06-17.