Computer Associates IdentityMinder Unspecified Arbitrary Command Execution Vulnerability
BID:57018
Info
Computer Associates IdentityMinder Unspecified Arbitrary Command Execution Vulnerability
| Bugtraq ID: | 57018 |
| Class: | Unknown |
| CVE: |
CVE-2012-6298 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 20 2012 12:00AM |
| Updated: | Dec 20 2012 12:00AM |
| Credit: | Reported by vendor. |
| Vulnerable: |
Computer Associates IdentityMinder R12.6 GA Computer Associates IdentityMinder R12.5 SP14 Computer Associates IdentityMinder r12.5 SP1 Computer Associates IdentityMinder r12 CR16 |
| Not Vulnerable: | |
Discussion
Computer Associates IdentityMinder Unspecified Arbitrary Command Execution Vulnerability
Computer Associates IdentityMinder is prone to an unspecified arbitrary command-execution vulnerability.
A remote attacker can exploit this issue to execute arbitrary commands or manipulate data within the context of the vulnerable application.
Computer Associates IdentityMinder is prone to an unspecified arbitrary command-execution vulnerability.
A remote attacker can exploit this issue to execute arbitrary commands or manipulate data within the context of the vulnerable application.
Exploit / POC
Computer Associates IdentityMinder Unspecified Arbitrary Command Execution Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Computer Associates IdentityMinder Unspecified Arbitrary Command Execution Vulnerability
Solution:
The vendor has released an advisory and fixes. Please see the references for more information.
Solution:
The vendor has released an advisory and fixes. Please see the references for more information.
References
Computer Associates IdentityMinder Unspecified Arbitrary Command Execution Vulnerability
References:
References:
- IdentityMinder Homepage (CA)
- CA20121220-01: Security Notice for CA IdentityMinder (CA Technologies)