CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.1. It may be remotely exploitable. Exploitation may require the attacker to be authenticated. It may lead to a denial-of-service condition.
CVE
CVE-2016-0915
Severity
HIGH
CVSS
8.1
EPSS
2.15%
Original NVD Description
The Self-Service Portal in EMC RSA Authentication Manager (AM) Prime Self-Service 3.0 and 3.1 before 3.1 1915.42871 allows remote authenticated users to cause a denial of service (PIN change for an arbitrary user) via a modified token serial number within a PIN change request, related to a "direct object reference vulnerability."