Vulnerability index

Browse CVEs

25 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Unified Infrastructure Management HIGH 7.5
CVE-2018-13819

A hardcoded secret key, in CA Unified Infrastructure Management 8.5.1, 8.5, and 8.4.7, allows attackers to access sensitive information.

Mitigation only
Fix from $1,950 2018-08-30
Unified Infrastructure Management HIGH 7.5
CVE-2018-13820

A hardcoded passphrase, in CA Unified Infrastructure Management 8.5.1, 8.5, and 8.4.7, allows attackers to access sensitive information.

No fix yet
Fix from $1,950 2018-08-30
Ca Privileged Access Manager MEDIUM 6.1
CVE-2018-9027

A reflected cross-site scripting vulnerability in CA Privileged Access Manager 2.x allows remote attackers to execute malicious script with a special…

Mitigation only
Fix from $1,600 2018-06-18
Workload Control Center CRITICAL 9.8
CVE-2018-8954EPSS 7%

CA Workload Control Center before r11.4 SP6 allows remote attackers to execute arbitrary code via a crafted HTTP request.

Mitigation only
Fix from $2,300 2018-04-11
Workload Automation Ae HIGH 8.8
CVE-2018-8953

CA Workload Automation AE before r11.3.6 SP7 allows remote attackers to a perform SQL injection via a crafted HTTP request.

Mitigation only
Fix from $1,950 2018-04-11
Identity Governance MEDIUM 5.4
CVE-2017-9394

A stored cross-site scripting vulnerability in CA Identity Governance 12.6 allows remote authenticated attackers to display HTML or execute script in…

Mitigation only
Fix from $1,600 2017-11-14
Identity Manager CRITICAL 9.8
CVE-2017-9393

CA Identity Manager r12.6 to r12.6 SP8, 14.0, and 14.1 allows remote attackers to potentially identify passwords of locked accounts through an exhaus…

Mitigation only
Fix from $2,300 2017-09-22
Client Automation MEDIUM 5.5
CVE-2017-8391

The OS Installation Management component in CA Client Automation r12.9, r14.0, and r14.0 SP1 places an encrypted password into a readable local file …

Mitigation only
Fix from $1,600 2017-05-06
Service Desk Manager MEDIUM 6.1
CVE-2016-9148

Cross-site scripting (XSS) vulnerability in CA Service Desk Manager (formerly CA Service Desk) 12.9 and 14.1 allows remote attackers to inject arbitr…

No fix yet
Fix from $1,600 2017-03-07
Identityminder HIGH 10.0
CVE-2012-6299

Unspecified vulnerability in CA IdentityMinder r12.0 through CR16, r12.5 before SP15, and r12.6 GA allows remote attackers to bypass intended access …

Mitigation only
Fix from $1,950 2012-12-26
Identityminder HIGH 10.0
CVE-2012-6298

Unspecified vulnerability in CA IdentityMinder r12.0 through CR16, r12.5 before SP15, and r12.6 GA allows remote attackers to execute arbitrary comma…

Mitigation only
Fix from $1,950 2012-12-26
Xcom Data Transport HIGH 10.0
CVE-2012-5973

CA XCOM Data Transport r11.0 and r11.5 on UNIX and Linux allows remote attackers to execute arbitrary commands via a crafted request.

Mitigation only
Fix from $1,950 2012-12-10
Internet Security Suite 2010 MEDIUM 6.2
CVE-2010-5156

Race condition in CA Internet Security Suite Plus 2010 6.0.0.272 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute da…

Mitigation only
Fix from $1,600 2012-08-25
Arcserve D2d MEDIUM 5.0
CVE-2011-3011EPSS 72%

BaseServiceImpl.class in CA ARCserve D2D r15 does not properly handle sessions, which allows remote attackers to obtain credentials, and consequently…

No fix yet
Fix from $1,600 2011-08-15
Host Based Intrusion Prevention System HIGH 8.8
CVE-2011-1036

The XML Security Database Parser class in the XMLSecDB ActiveX control in the HIPSEngine component in the Management Server before 8.1.0.88, and the …

Mitigation only
Fix from $1,950 2011-02-25
Etrust Secure Content Manager HIGH 10.0
CVE-2011-0758EPSS 8%

The eCS component (ECSQdmn.exe) in CA ETrust Secure Content Manager 8.0 and CA Gateway Security 8.1 allows remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,950 2011-02-10
Arcserve Replication And High Availability HIGH 7.5
CVE-2010-3984EPSS 5%

Buffer overflow in mng_core_com.dll in CA XOsoft Replication r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft High Availability r12.0 SP1 and r12.5 SP2 roll…

Mitigation only
Fix from $1,950 2011-01-07
Internet Security Suite Plus 2010 HIGH 7.2
CVE-2010-4502

Integer overflow in KmxSbx.sys 6.2.0.22 in CA Internet Security Suite Plus 2010 allows local users to cause a denial of service (pool corruption) and…

No fix yet
Fix from $1,950 2010-12-08
Psformx Active X Control HIGH 10.0
CVE-2010-2193EPSS 6%

Multiple unspecified vulnerabilities in the CA (1) PSFormX and (2) WebScan ActiveX controls, as distributed on the CA Global Advisor web site until M…

Mitigation only
Fix from $1,950 2010-06-10
Etrust Pestpatrole Ppctl.dll Activex HIGH 9.3
CVE-2009-4225EPSS 31%

Stack-based buffer overflow in the PestPatrol ActiveX control (ppctl.dll) 5.6.7.9 in CA eTrust PestPatrol allows remote attackers to execute arbitrar…

No fix yet
Fix from $1,950 2009-12-08
Internet Security Suite Plus 2008 HIGH 9.3
CVE-2008-2511EPSS 10%

Directory traversal vulnerability in the UmxEventCli.CachedAuditDataList.1 (aka UmxEventCliLib) ActiveX control in UmxEventCli.dll in CA Internet Sec…

No fix yet
Fix from $1,950 2008-06-02
Brightstor Arcserve Backup HIGH 7.8
CVE-2007-2772EPSS 12%

(1) caloggerd.exe (camt70.dll) and (2) mediasvr.exe (catirpc.dll and rwxdr.dll) in CA BrightStor Backup 11.5.2.0 SP2 allow remote attackers to cause …

No fix yet
Fix from $1,950 2007-05-21
Host Based Intrusion Prevention System HIGH 7.2
CVE-2006-6952

Computer Associates Host Intrusion Prevention System (HIPS) drivers (1) Core kmxstart.sys 6.5.4.31 and (2) Firewall kmxfw.sys 6.5.4.10 allow local us…

No fix yet
Fix from $1,950 2007-01-24
Brightstor Arcserve Backup HIGH 7.5
CVE-2005-1018EPSS 52%

Buffer overflow in the UniversalAgent for Computer Associates (CA) BrightStor ARCserve Backup allows remote authenticated users to cause a denial of …

Mitigation only
Fix from $1,950 2005-05-02
Arcserve Backup HIGH 7.2
CVE-2000-0781

uagentsetup in ARCServeIT Client Agent 6.62 does not properly check for the existence or ownership of a temporary file which is moved to the agent.cf…

Mitigation only
Fix from $1,950 2000-10-20