CVE-2006-7200

EMC RSA Security SiteKey issues challenge-bypass tokens that persist forever without a cancellation interface for end users, which makes it easier for attackers to bypass one stage of authentication by stealing and replaying a token.

Date published : 2007-04-30

http://www.cr-labs.com/publications/SiteKey-20060718.pdf

http://www.cr-labs.com/publications/WhySiteKey-20060824.pdf