VU#273940: Enterprise Access Management EAM does not rotate RSA keys
Imported from official source
Overview Imprivata Enterprise Access Management (EAM), an authentication and single sign-on platform for enterprise and clinical environments, contains a vulnerability in versions 26.2.6 and below. The product provides no supported mechanism to rotate its RSA key pair after deployment, meaning the same key pair is used indefinitely to generate the appliance's X.509 certificate. …
This version
- Version
- 1 of 2
- Recorded
- September 23, 2026 19:00
- Change
- Initial
- Content hash
6f001c6aa58a227ff301d00e0f483531- All versions
- Revision history