Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.5
CVE-2018-13819
A hardcoded secret key, in CA Unified Infrastructure Management 8.5.1, 8.5, and 8.4.7, allows attackers to access sensitive information.
Unified Infrastructure Management
Mitigation only
HIGH 7.5
CVE-2018-13820
A hardcoded passphrase, in CA Unified Infrastructure Management 8.5.1, 8.5, and 8.4.7, allows attackers to access sensitive information.
Unified Infrastructure Management
No fix yet
MEDIUM 6.1
CVE-2018-9027
A reflected cross-site scripting vulnerability in CA Privileged Access Manager 2.x allows remote attackers to execute malicious script with a special…
Ca Privileged Access Manager
Mitigation only
CRITICAL 9.8
CVE-2018-8954EPSS 7%
CA Workload Control Center before r11.4 SP6 allows remote attackers to execute arbitrary code via a crafted HTTP request.
Workload Control Center
Mitigation only
HIGH 8.8
CVE-2018-8953
CA Workload Automation AE before r11.3.6 SP7 allows remote attackers to a perform SQL injection via a crafted HTTP request.
Workload Automation Ae
Mitigation only
MEDIUM 5.4
CVE-2017-9394
A stored cross-site scripting vulnerability in CA Identity Governance 12.6 allows remote authenticated attackers to display HTML or execute script in…
Identity Governance
Mitigation only
CRITICAL 9.8
CVE-2017-9393
CA Identity Manager r12.6 to r12.6 SP8, 14.0, and 14.1 allows remote attackers to potentially identify passwords of locked accounts through an exhaus…
Identity Manager
Mitigation only
MEDIUM 5.5
CVE-2017-8391
The OS Installation Management component in CA Client Automation r12.9, r14.0, and r14.0 SP1 places an encrypted password into a readable local file …
Client Automation
Mitigation only
MEDIUM 6.1
CVE-2016-9148
Cross-site scripting (XSS) vulnerability in CA Service Desk Manager (formerly CA Service Desk) 12.9 and 14.1 allows remote attackers to inject arbitr…
Service Desk Manager
No fix yet
HIGH 10.0
CVE-2012-6299
Unspecified vulnerability in CA IdentityMinder r12.0 through CR16, r12.5 before SP15, and r12.6 GA allows remote attackers to bypass intended access …
Identityminder
Mitigation only
HIGH 10.0
CVE-2012-6298
Unspecified vulnerability in CA IdentityMinder r12.0 through CR16, r12.5 before SP15, and r12.6 GA allows remote attackers to execute arbitrary comma…
Identityminder
Mitigation only
HIGH 10.0
CVE-2012-5973
CA XCOM Data Transport r11.0 and r11.5 on UNIX and Linux allows remote attackers to execute arbitrary commands via a crafted request.
Xcom Data Transport
Mitigation only
MEDIUM 6.2
CVE-2010-5156
Race condition in CA Internet Security Suite Plus 2010 6.0.0.272 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute da…
Internet Security Suite 2010
Mitigation only
MEDIUM 5.0
CVE-2011-3011EPSS 72%
BaseServiceImpl.class in CA ARCserve D2D r15 does not properly handle sessions, which allows remote attackers to obtain credentials, and consequently…
Arcserve D2d
No fix yet
HIGH 8.8
CVE-2011-1036
The XML Security Database Parser class in the XMLSecDB ActiveX control in the HIPSEngine component in the Management Server before 8.1.0.88, and the …
Host Based Intrusion Prevention System
Mitigation only
HIGH 10.0
CVE-2011-0758EPSS 8%
The eCS component (ECSQdmn.exe) in CA ETrust Secure Content Manager 8.0 and CA Gateway Security 8.1 allows remote attackers to cause a denial of serv…
Etrust Secure Content Manager
Mitigation only
HIGH 7.5
CVE-2010-3984EPSS 5%
Buffer overflow in mng_core_com.dll in CA XOsoft Replication r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft High Availability r12.0 SP1 and r12.5 SP2 roll…
Arcserve Replication And High Availability
Mitigation only
HIGH 7.2
CVE-2010-4502
Integer overflow in KmxSbx.sys 6.2.0.22 in CA Internet Security Suite Plus 2010 allows local users to cause a denial of service (pool corruption) and…
Internet Security Suite Plus 2010
No fix yet
HIGH 10.0
CVE-2010-2193EPSS 6%
Multiple unspecified vulnerabilities in the CA (1) PSFormX and (2) WebScan ActiveX controls, as distributed on the CA Global Advisor web site until M…
Psformx Active X Control
Mitigation only
HIGH 9.3
CVE-2009-4225EPSS 31%
Stack-based buffer overflow in the PestPatrol ActiveX control (ppctl.dll) 5.6.7.9 in CA eTrust PestPatrol allows remote attackers to execute arbitrar…
Etrust Pestpatrole Ppctl.dll Activex
No fix yet
HIGH 9.3
CVE-2008-2511EPSS 10%
Directory traversal vulnerability in the UmxEventCli.CachedAuditDataList.1 (aka UmxEventCliLib) ActiveX control in UmxEventCli.dll in CA Internet Sec…
Internet Security Suite Plus 2008
No fix yet
HIGH 7.8
CVE-2007-2772EPSS 12%
(1) caloggerd.exe (camt70.dll) and (2) mediasvr.exe (catirpc.dll and rwxdr.dll) in CA BrightStor Backup 11.5.2.0 SP2 allow remote attackers to cause …
Brightstor Arcserve Backup
No fix yet
HIGH 7.2
CVE-2006-6952
Computer Associates Host Intrusion Prevention System (HIPS) drivers (1) Core kmxstart.sys 6.5.4.31 and (2) Firewall kmxfw.sys 6.5.4.10 allow local us…
Host Based Intrusion Prevention System
No fix yet
HIGH 7.5
CVE-2005-1018EPSS 52%
Buffer overflow in the UniversalAgent for Computer Associates (CA) BrightStor ARCserve Backup allows remote authenticated users to cause a denial of …
Brightstor Arcserve Backup
Mitigation only
HIGH 7.2
CVE-2000-0781
uagentsetup in ARCServeIT Client Agent 6.62 does not properly check for the existence or ownership of a temporary file which is moved to the agent.cf…
Arcserve Backup
Mitigation only