Vulnerability index

Browse CVEs

131 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Investigation Tool MEDIUM 5.4
CVE-2014-6799

The Investigation Tool (aka gov.ca.post.lp.itool) application 1.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man…

Mitigation only
Fix from $1,600 2014-09-29
Pipa C211 Web Interface HIGH 9.7
CVE-2014-2046

cgi-bin/rpcBridge in the web interface 1.1 on Broadcom Ltd PIPA C211 rev2 does not properly restrict access, which allows remote attackers to (1) obt…

No fix yet
Fix from $1,950 2014-05-14
2e Web Option MEDIUM 5.1
CVE-2014-1219

CA 2E Web Option r8.1.2 accepts a predictable substring of a W2E_SSNID session token in place of the entire token, which allows remote attackers to h…

Mitigation only
Fix from $1,600 2014-02-14
Arcserve Backup MEDIUM 5.0
CVE-2012-1662

CA ARCserve Backup r12.0 through SP2, r12.5 before SP2, r15 through SP1, and r16 before SP1 on Windows allows remote attackers to cause a denial of s…

Mitigation only
Fix from $1,600 2012-03-22
Broadcom Linux HIGH 7.5
CVE-2011-4503

The UPnP IGD implementation in Broadcom Linux on the Sitecom WL-111 allows remote attackers to establish arbitrary port mappings by sending a UPnP Ad…

Mitigation only
Fix from $1,950 2011-11-22
Total Defense HIGH 10.0
CVE-2011-2667EPSS 16%

Icihttp.exe in CA Gateway Security for HTTP, as used in CA Gateway Security 8.1 before 8.1.0.69 and CA Total Defense r12, does not properly parse URL…

Mitigation only
Fix from $1,950 2011-07-28
Output Management Web Viewer HIGH 9.3
CVE-2011-1719EPSS 12%

Multiple stack-based buffer overflows in the Web Viewer ActiveX controls in CA Output Management Web Viewer 11.0 and 11.5 allow remote attackers to e…

Mitigation only
Fix from $1,950 2011-04-27
Total Defense HIGH 10.0
CVE-2011-1653EPSS 89%

Multiple SQL injection vulnerabilities in the Unified Network Control (UNC) Server in CA Total Defense (TD) r12 before SE2 allow remote attackers to …

Mitigation only
Fix from $1,950 2011-04-18
Total Defense HIGH 7.5
CVE-2011-1654EPSS 11%

Directory traversal vulnerability in the Heartbeat Web Service in CA.Itm.Server.ManagementWS.dll in the Management Server in CA Total Defense (TD) r1…

Mitigation only
Fix from $1,950 2011-04-18
Total Defense HIGH 7.5
CVE-2011-1655EPSS 12%

The management.asmx module in the Management Web Service in the Unified Network Control (UNC) Server in CA Total Defense (TD) r12 before SE2 sends a …

Mitigation only
Fix from $1,950 2011-04-18
Anti Spyware HIGH 10.0
CVE-2009-0042

Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterpr…

Mitigation only
Fix from $1,950 2009-01-28
Desktop Management Suite HIGH 10.0
CVE-2008-1329EPSS 6%

Unspecified vulnerability in the NetBackup service in CA ARCserve Backup for Laptops and Desktops r11.0 through r11.5, and Suite 11.1 and 11.2, allow…

Mitigation only
Fix from $1,950 2008-04-07
Anti Virus For The Enterprise HIGH 9.0
CVE-2007-4620EPSS 52%

Multiple stack-based buffer overflows in Computer Associates (CA) Alert Notification Service (Alert.exe) 8.1.586.0, 8.0.450.0, and 7.1.758.0, as used…

Mitigation only
Fix from $1,950 2008-04-07
Etrust Integrated Threat Management MEDIUM 5.8
CVE-2007-5437

The web console in CA (formerly Computer Associates) eTrust ITM (Threat Manager) 8.1 allows remote attackers to redirect users to arbitrary web sites…

Mitigation only
Fix from $1,600 2007-10-13
Etrust Integrated Threat Management MEDIUM 5.0
CVE-2007-5439

CA (formerly Computer Associates) eTrust ITM (Threat Manager) 8.1 stores sensitive user information in log files with predictable names, which allows…

Mitigation only
Fix from $1,600 2007-10-13
Advantage Data Transport HIGH 9.3
CVE-2007-0060EPSS 24%

Stack-based buffer overflow in the Message Queuing Server (Cam.exe) in CA (formerly Computer Associates) Message Queuing (CAM / CAFT) software before…

Mitigation only
Fix from $1,950 2007-07-26
Erwin Process Modeler HIGH 10.0
CVE-2007-3695

Buffer overflow in LICRCMD.EXE in CA ERwin Process Modeler (formerly AllFusion Process Modeler) 7.1 allows attackers to execute arbitrary code via a …

Mitigation only
Fix from $1,950 2007-07-11
Erwin Data Model Validator HIGH 7.8
CVE-2007-3696

CA ERwin Data Model Validator (formerly AllFusion Data Model Validator) allows remote attackers to (1) cause a denial of service (application hang) v…

Mitigation only
Fix from $1,950 2007-07-11
Brightstor Arcserve Backup Laptops Desktops HIGH 10.0
CVE-2007-3216EPSS 59%

Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.1 allow remot…

Mitigation only
Fix from $1,950 2007-06-14
Antispyware For The Enterprise HIGH 10.0
CVE-2007-2522EPSS 27%

Stack-based buffer overflow in the inoweb Console Server in CA Anti-Virus for the Enterprise r8, Threat Manager r8, Anti-Spyware for the Enterprise r…

Mitigation only
Fix from $1,950 2007-05-11
Cleverpath Portal MEDIUM 6.5
CVE-2007-2230

SQL injection vulnerability in CA Clever Path Portal allows remote authenticated users to execute limited SQL commands and retrieve arbitrary databas…

No fix yet
Fix from $1,600 2007-04-25
Brightstor Arcserve Backup HIGH 7.1
CVE-2007-1785EPSS 15%

The RPC service in mediasvr.exe in CA BrightStor ARCserve Backup 11.5 SP2 build 4237 allows remote attackers to execute arbitrary code via crafted xd…

Mitigation only
Fix from $1,950 2007-03-31
Brightstor Arcserve Backup MEDIUM 5.0
CVE-2007-0816EPSS 11%

The RPC Server service (catirpc.exe) in CA (formerly Computer Associates) BrightStor ARCserve Backup 11.5 SP2 and earlier allows remote attackers to …

No fix yet
Fix from $1,600 2007-02-07
Widcomm Bluetooth HIGH 10.0
CVE-2006-6905

Unspecified vulnerability in the Widcomm Bluetooth stack allows remote attackers to gain administrative access (aka Remote Root) via unspecified vect…

No fix yet
Fix from $1,950 2006-12-31
Brightstor Arcserve Backup Server HIGH 10.0
CVE-2006-6917EPSS 30%

Multiple buffer overflows in Computer Associates (CA) BrightStor ARCserve Backup R11.5 Server before SP2 allows remote attackers to execute arbitrary…

No fix yet
Fix from $1,950 2006-12-31
Bluetooth Stack HIGH 7.9
CVE-2006-6904

Unspecified vulnerability in the Broadcom Bluetooth stack allows remote attackers to gain administrative access (aka Remote Root) via unspecified vec…

No fix yet
Fix from $1,950 2006-12-31
Widcomm Bluetooth HIGH 7.8
CVE-2006-6898

Widcomm Bluetooth for Windows (BTW) before 4.0.1.1500 allows remote attackers to listen to and record conversations, aka the CarWhisperer attack.

Mitigation only
Fix from $1,950 2006-12-31
Etrust Antivirus MEDIUM 6.6
CVE-2006-6496

The (1) VetMONNT.sys and (2) VetFDDNT.sys drivers in CA Anti-Virus 2007 8.1, Anti-Virus for Vista Beta 8.2, and CA Internet Security Suite 2007 v3.0 …

Mitigation only
Fix from $1,600 2006-12-13
Brightstor Arcserve Backup HIGH 7.5
CVE-2006-6379EPSS 21%

Buffer overflow in the BrightStor Backup Discovery Service in multiple CA products, including ARCserve Backup r11.5 SP1 and earlier, ARCserve Backup …

Mitigation only
Fix from $1,950 2006-12-10
Brightstor Arcserve Backup Laptops Desktops MEDIUM 5.0
CVE-2006-0306EPSS 12%

The DM Primer (dmprimer.exe) in the DM Deployment Common Component in Computer Associates (CA) BrightStor Mobile Backup r4.0, BrightStor ARCserve Bac…

No fix yet
Fix from $1,600 2006-01-19