Vulnerability record · CVE-2017-14377 · published 29 November 2017
CVE-2017-14377: Rsa authentication agent for web improper authentication vulnerability
Rsa · Authentication Agent For Web
EMC RSA Authentication Agent for Web: Apache Web Server version 8.0 and RSA Authentication Agent for Web: Apache Web Server version 8.0.1 prior to Build 618 have a security vulnerability that could potentially lead to authentication bypass.
Description
EMC RSA Authentication Agent for Web: Apache Web Server version 8.0 and RSA Authentication Agent for Web: Apache Web Server version 8.0.1 prior to Build 618 have a security vulnerability that could potentially lead to authentication bypass.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| http://seclists.org/fulldisclosure/2017/Nov/46 | Mailing ListThird Party Advisory |
| http://www.securityfocus.com/bid/101980 | Third Party AdvisoryVDB Entry |
| http://www.securitytracker.com/id/1039876 | Third Party AdvisoryVDB Entry |
| http://seclists.org/fulldisclosure/2017/Nov/46 | Mailing ListThird Party Advisory |
| http://www.securityfocus.com/bid/101980 | Third Party AdvisoryVDB Entry |
| http://www.securitytracker.com/id/1039876 | Third Party AdvisoryVDB Entry |
Track CVE-2017-14377 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2017-14377), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.