Vulnerability index

Browse CVEs

25 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2018-13819 A hardcoded secret key, in CA Unified Infrastructure Management 8.5.1, 8.5, and 8.4.7, allows attackers to access sensitive information. Unified Infrastructure Management Mitigation only Fix from $1,9502018-08-30 HIGH 7.5 CVE-2018-13820 A hardcoded passphrase, in CA Unified Infrastructure Management 8.5.1, 8.5, and 8.4.7, allows attackers to access sensitive information. Unified Infrastructure Management No fix yet Fix from $1,9502018-08-30 MEDIUM 6.1 CVE-2018-9027 A reflected cross-site scripting vulnerability in CA Privileged Access Manager 2.x allows remote attackers to execute malicious script with a special… Ca Privileged Access Manager Mitigation only Fix from $1,6002018-06-18 CRITICAL 9.8 CVE-2018-8954EPSS 7% CA Workload Control Center before r11.4 SP6 allows remote attackers to execute arbitrary code via a crafted HTTP request. Workload Control Center Mitigation only Fix from $2,3002018-04-11 HIGH 8.8 CVE-2018-8953 CA Workload Automation AE before r11.3.6 SP7 allows remote attackers to a perform SQL injection via a crafted HTTP request. Workload Automation Ae Mitigation only Fix from $1,9502018-04-11 MEDIUM 5.4 CVE-2017-9394 A stored cross-site scripting vulnerability in CA Identity Governance 12.6 allows remote authenticated attackers to display HTML or execute script in… Identity Governance Mitigation only Fix from $1,6002017-11-14 CRITICAL 9.8 CVE-2017-9393 CA Identity Manager r12.6 to r12.6 SP8, 14.0, and 14.1 allows remote attackers to potentially identify passwords of locked accounts through an exhaus… Identity Manager Mitigation only Fix from $2,3002017-09-22 MEDIUM 5.5 CVE-2017-8391 The OS Installation Management component in CA Client Automation r12.9, r14.0, and r14.0 SP1 places an encrypted password into a readable local file … Client Automation Mitigation only Fix from $1,6002017-05-06 MEDIUM 6.1 CVE-2016-9148 Cross-site scripting (XSS) vulnerability in CA Service Desk Manager (formerly CA Service Desk) 12.9 and 14.1 allows remote attackers to inject arbitr… Service Desk Manager No fix yet Fix from $1,6002017-03-07 HIGH 10.0 CVE-2012-6299 Unspecified vulnerability in CA IdentityMinder r12.0 through CR16, r12.5 before SP15, and r12.6 GA allows remote attackers to bypass intended access … Identityminder Mitigation only Fix from $1,9502012-12-26 HIGH 10.0 CVE-2012-6298 Unspecified vulnerability in CA IdentityMinder r12.0 through CR16, r12.5 before SP15, and r12.6 GA allows remote attackers to execute arbitrary comma… Identityminder Mitigation only Fix from $1,9502012-12-26 HIGH 10.0 CVE-2012-5973 CA XCOM Data Transport r11.0 and r11.5 on UNIX and Linux allows remote attackers to execute arbitrary commands via a crafted request. Xcom Data Transport Mitigation only Fix from $1,9502012-12-10 MEDIUM 6.2 CVE-2010-5156 Race condition in CA Internet Security Suite Plus 2010 6.0.0.272 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute da… Internet Security Suite 2010 Mitigation only Fix from $1,6002012-08-25 MEDIUM 5.0 CVE-2011-3011EPSS 72% BaseServiceImpl.class in CA ARCserve D2D r15 does not properly handle sessions, which allows remote attackers to obtain credentials, and consequently… Arcserve D2d No fix yet Fix from $1,6002011-08-15 HIGH 8.8 CVE-2011-1036 The XML Security Database Parser class in the XMLSecDB ActiveX control in the HIPSEngine component in the Management Server before 8.1.0.88, and the … Host Based Intrusion Prevention System Mitigation only Fix from $1,9502011-02-25 HIGH 10.0 CVE-2011-0758EPSS 8% The eCS component (ECSQdmn.exe) in CA ETrust Secure Content Manager 8.0 and CA Gateway Security 8.1 allows remote attackers to cause a denial of serv… Etrust Secure Content Manager Mitigation only Fix from $1,9502011-02-10 HIGH 7.5 CVE-2010-3984EPSS 5% Buffer overflow in mng_core_com.dll in CA XOsoft Replication r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft High Availability r12.0 SP1 and r12.5 SP2 roll… Arcserve Replication And High Availability Mitigation only Fix from $1,9502011-01-07 HIGH 7.2 CVE-2010-4502 Integer overflow in KmxSbx.sys 6.2.0.22 in CA Internet Security Suite Plus 2010 allows local users to cause a denial of service (pool corruption) and… Internet Security Suite Plus 2010 No fix yet Fix from $1,9502010-12-08 HIGH 10.0 CVE-2010-2193EPSS 6% Multiple unspecified vulnerabilities in the CA (1) PSFormX and (2) WebScan ActiveX controls, as distributed on the CA Global Advisor web site until M… Psformx Active X Control Mitigation only Fix from $1,9502010-06-10 HIGH 9.3 CVE-2009-4225EPSS 31% Stack-based buffer overflow in the PestPatrol ActiveX control (ppctl.dll) 5.6.7.9 in CA eTrust PestPatrol allows remote attackers to execute arbitrar… Etrust Pestpatrole Ppctl.dll Activex No fix yet Fix from $1,9502009-12-08 HIGH 9.3 CVE-2008-2511EPSS 10% Directory traversal vulnerability in the UmxEventCli.CachedAuditDataList.1 (aka UmxEventCliLib) ActiveX control in UmxEventCli.dll in CA Internet Sec… Internet Security Suite Plus 2008 No fix yet Fix from $1,9502008-06-02 HIGH 7.8 CVE-2007-2772EPSS 12% (1) caloggerd.exe (camt70.dll) and (2) mediasvr.exe (catirpc.dll and rwxdr.dll) in CA BrightStor Backup 11.5.2.0 SP2 allow remote attackers to cause … Brightstor Arcserve Backup No fix yet Fix from $1,9502007-05-21 HIGH 7.2 CVE-2006-6952 Computer Associates Host Intrusion Prevention System (HIPS) drivers (1) Core kmxstart.sys 6.5.4.31 and (2) Firewall kmxfw.sys 6.5.4.10 allow local us… Host Based Intrusion Prevention System No fix yet Fix from $1,9502007-01-24 HIGH 7.5 CVE-2005-1018EPSS 52% Buffer overflow in the UniversalAgent for Computer Associates (CA) BrightStor ARCserve Backup allows remote authenticated users to cause a denial of … Brightstor Arcserve Backup Mitigation only Fix from $1,9502005-05-02 HIGH 7.2 CVE-2000-0781 uagentsetup in ARCServeIT Client Agent 6.62 does not properly check for the existence or ownership of a temporary file which is moved to the agent.cf… Arcserve Backup Mitigation only Fix from $1,9502000-10-20