Vulnerability index

Browse CVEs

479 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ca Performance Management HIGH 8.8
CVE-2019-13657

CA Performance Management 3.5.x, 3.6.x before 3.6.9, and 3.7.x before 3.7.4 have a default credential vulnerability that can allow a remote attacker …

Fix: 3.6.9 / 3.7.4+
Fix from $1,950 2019-10-17
Network Flow Analysis CRITICAL 9.8
CVE-2019-13658

CA Network Flow Analysis 9.x and 10.0.x have a default credential vulnerability that can allow a remote attacker to execute arbitrary commands and co…

Fix: after 9.5.0
Fix from $2,300 2019-10-02
Ca Client Automation CRITICAL 9.8
CVE-2019-13656EPSS 6%

An access vulnerability in CA Common Services DIA of CA Technologies Client Automation 14 and Workload Automation AE 11.3.5, 11.3.6 allows a remote a…

No fix yet
Fix from $2,300 2019-09-06
Advanced Secure Gateway MEDIUM 6.5
CVE-2018-18371

The ASG/ProxySG FTP proxy WebFTP mode allows intercepting FTP connections where a user accesses an FTP server via a ftp:// URL in a web browser. An i…

Fix: 6.5.10.15 / 6.7.4.2+
Fix from $1,600 2019-08-30
Advanced Secure Gateway MEDIUM 6.1
CVE-2018-18370

The ASG/ProxySG FTP proxy WebFTP mode allows intercepting FTP connections where a user accesses an FTP server via a ftp:// URL in a web browser. A st…

Fix: 6.5.10.15 / 6.7.4.2+
Fix from $1,600 2019-08-30
Bcm4335c0 Firmware HIGH 8.8
CVE-2018-19860

Broadcom firmware before summer 2014 on Nexus 5 BCM4335C0 2012-12-11, Raspberry Pi 3 BCM43438A1 2014-06-02, and unspecifed other devices does not pro…

Mitigation only
Fix from $1,950 2019-06-07
Privileged Access Manager CRITICAL 9.1
CVE-2019-7392

An improper authentication vulnerability in CA Privileged Access Manager 3.x Web-UI jk-manager and jk-status allows a remote attacker to gain sensiti…

Fix: after 3.2.1
Fix from $2,300 2019-02-26
Automic Workload Automation MEDIUM 6.1
CVE-2019-6504

Insufficient output sanitization in the Automic Web Interface (AWI), in CA Automic Workload Automation 12.0 to 12.2, allow attackers to potentially c…

Fix: after 12.2
Fix from $1,600 2019-02-06
Service Desk Manager CRITICAL 9.8
CVE-2018-19635

CA Service Desk Manager 14.1 and 17 contain a vulnerability that can allow a malicious actor to escalate privileges in the user interface.

Patch available
Fix from $2,300 2019-01-22
Service Desk Manager HIGH 7.5
CVE-2018-19634

CA Service Desk Manager 14.1 and 17 contain a vulnerability that can allow a malicious actor to access survey information.

Patch available
Fix from $1,950 2019-01-22
Tcpreplay HIGH 7.8
CVE-2018-20552

Tcpreplay before 4.3.1 has a heap-based buffer over-read in packet2tree in tree.c.

Fix: 4.3.1+
Fix from $1,950 2018-12-28
Tcpreplay HIGH 7.8
CVE-2018-20553

Tcpreplay before 4.3.1 has a heap-based buffer over-read in get_l2len in common/get.c.

Fix: 4.3.1+
Fix from $1,950 2018-12-28
Fabric Operating System CRITICAL 9.1
CVE-2018-6440

A vulnerability in the proxy service of Brocade Fabric OS versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allow remote unauthenticated attackers …

Fix: 7.4.2d / 8.0.2f+
Fix from $2,300 2018-12-03
Fabric Operating System HIGH 7.8
CVE-2018-6439

A Vulnerability in the configdownload command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could a…

Fix: 7.4.2d / 8.0.2f+
Fix from $1,950 2018-12-03
Fabric Operating System HIGH 7.8
CVE-2018-6437

A Vulnerability in the help command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allow a loc…

Fix: 7.4.2d / 8.0.2f+
Fix from $1,950 2018-11-08
Fabric Operating System HIGH 7.8
CVE-2018-6438

A Vulnerability in the supportsave command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allo…

Fix: 7.4.2d / 8.0.2f+
Fix from $1,950 2018-11-08
Fabric Operating System HIGH 7.8
CVE-2018-6436

A Vulnerability in the firmwaredownload command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could…

Fix: 7.4.2d / 8.0.2f+
Fix from $1,950 2018-11-08
Fabric Operating System HIGH 8.8
CVE-2018-6442

A vulnerability in the Brocade Webtools firmware update section of Brocade Fabric OS before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allow remote authenti…

Fix: 7.4.2d / 8.0.2f+
Fix from $1,950 2018-11-08
Fabric Operating System HIGH 7.8
CVE-2018-6435

A Vulnerability in the secryptocfg command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allo…

Fix: 7.4.2d / 8.0.2f+
Fix from $1,950 2018-11-08
Fabric Operating System HIGH 7.8
CVE-2018-6441

A vulnerability in Secure Shell implementation of Brocade Fabric OS versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allow a local attacker to pro…

Fix: 7.4.2d / 8.0.2f+
Fix from $1,950 2018-11-08
Fabric Operating System HIGH 7.5
CVE-2018-6434

A vulnerability in the web management interface of Brocade Fabric OS versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allow attackers to intercept…

Fix: 7.4.2d / 8.0.2f+
Fix from $1,950 2018-11-08
Fabric Operating System MEDIUM 5.5
CVE-2018-6433

A vulnerability in the secryptocfg export command of Brocade Fabric OS versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allow a local attacker to …

Fix: 7.4.2d / 8.0.2f+
Fix from $1,600 2018-11-08
Ca Identity Governance MEDIUM 5.3
CVE-2018-14597

CA Technologies Identity Governance 12.6, 14.0, 14.1, and 14.2 and CA Identity Suite Virtual Appliance 14.0, 14.1, and 14.2 provide telling error mes…

Fix: after 14.2
Fix from $1,600 2018-10-17
Tcpreplay MEDIUM 5.5
CVE-2018-17974

An issue was discovered in Tcpreplay 4.3.0 beta1. A heap-based buffer over-read was triggered in the function dlt_en10mb_encode() of the file plugins…

No fix yet
Fix from $1,600 2018-10-03
Tcpreplay HIGH 7.1
CVE-2018-17582

Tcpreplay v4.3.0 beta1 contains a heap-based buffer over-read. The get_next_packet() function in the send_packets.c file uses the memcpy() function u…

Patch available
Fix from $1,950 2018-09-28
Tcpreplay HIGH 7.1
CVE-2018-17580

A heap-based buffer over-read exists in the function fast_edit_packet() in the file send_packets.c of Tcpreplay v4.3.0 beta1. This can lead to Denial…

Patch available
Fix from $1,950 2018-09-28
Project Portfolio Management CRITICAL 9.8
CVE-2018-13824

Insufficient input sanitization of two parameters in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and below, allows remote att…

Fix: after 14.3
Fix from $2,300 2018-08-30
Release Automation CRITICAL 9.8
CVE-2018-15691EPSS 17%

Insecure deserialization of a specially crafted serialized object, in CA Release Automation 6.5 and earlier, allows attackers to potentially execute …

Fix: 6.3.0.9945 / 6.4.0.10119+
Fix from $2,300 2018-08-30
Project Portfolio Management CRITICAL 9.1
CVE-2018-13826

An XML external entity vulnerability in the XOG functionality, in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and below, allo…

Fix: after 14.3
Fix from $2,300 2018-08-30
Project Portfolio Management HIGH 7.5
CVE-2018-13823

An XML external entity vulnerability in the XOG functionality, in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and below, allo…

Fix: after 14.3
Fix from $1,950 2018-08-30