Loading
RSA Authentication Manager versions prior to 8.4 P7 contain an XML Entity Injection Vulnerability. A remote authenticated malicious user could potentially exploit this vulnerability to cause information disclosure of local system files by supplying specially crafted XML message.
Use CWE-611, Emc vendor hub and Rsa Authentication Manager product page to widen CVE-2019-3768 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2018-11073, CVE-2018-11074 and CVE-2018-1254 for nearby disclosures in the same product family.