Historical version

This is version 1, as it stood on . It is not what this organization currently publishes — read the current version.

VU#273940: Enterprise Access Management EAM does not rotate RSA keys

CERT Coordination Center Version 1 original

Imported from official source

Overview Imprivata Enterprise Access Management (EAM), an authentication and single sign-on platform for enterprise and clinical environments, contains a vulnerability in versions 26.2.6 and below. The product provides no supported mechanism to rotate its RSA key pair after deployment, meaning the same key pair is used indefinitely to generate the appliance's X.509 certificate. …

This version

Version
1 of 2
Recorded
September 23, 2026 19:00
Change
Initial
Content hash
6f001c6aa58a227ff301d00e0f483531
All versions
Revision history

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.