Known Vulnerabilities for products from Ca

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Ca".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-28250 json ** UNSUPPORTED WHEN ASSIGNED ** CA eHealth Performance Manager through 6.3.2.12 is affected by Privilege Escalation via a set... 7.8 - HIGH 2021-03-26 2023-11-07
CVE-2021-28249 json ** UNSUPPORTED WHEN ASSIGNED ** CA eHealth Performance Manager through 6.3.2.12 is affected by Privilege Escalation via a Dyn... 8.8 - HIGH 2021-03-26 2023-11-07
CVE-2021-28248 json ** UNSUPPORTED WHEN ASSIGNED ** CA eHealth Performance Manager through 6.3.2.12 is affected by Improper Restriction of Excess... 7.5 - HIGH 2021-03-26 2023-11-07
CVE-2021-28247 json ** UNSUPPORTED WHEN ASSIGNED ** CA eHealth Performance Manager through 6.3.2.12 is affected by Cross Site Scripting (XSS). Th... 5.4 - MEDIUM 2021-03-26 2023-11-07
CVE-2021-28246 json ** UNSUPPORTED WHEN ASSIGNED ** CA eHealth Performance Manager through 6.3.2.12 is affected by Privilege Escalation via a Dyn... 7.8 - HIGH 2021-03-26 2023-11-07
CVE-2019-13658 json CA Network Flow Analysis 9.x and 10.0.x have a default credential vulnerability that can allow a remote attacker to execute a... 9.8 - CRITICAL 2019-10-02 2021-04-09
CVE-2019-7394 json A privilege escalation vulnerability in the administrative user interface of CA Technologies CA Strong Authentication 9.0.x, ... 8.8 - HIGH 2019-05-28 2020-10-06
CVE-2019-7393 json A UI redress vulnerability in the administrative user interface of CA Technologies CA Strong Authentication 9.0.x, 8.2.x, 8.1... 4.3 - MEDIUM 2019-05-28 2020-10-06
CVE-2019-7392 json An improper authentication vulnerability in CA Privileged Access Manager 3.x Web-UI jk-manager and jk-status allows a remote ... 9.1 - CRITICAL 2019-02-26 2021-04-12
CVE-2019-6504 json Insufficient output sanitization in the Automic Web Interface (AWI), in CA Automic Workload Automation 12.0 to 12.2, allow at... 6.1 - MEDIUM 2019-02-06 2021-04-07
CVE-2018-19635 json CA Service Desk Manager 14.1 and 17 contain a vulnerability that can allow a malicious actor to escalate privileges in the us... 9.8 - CRITICAL 2019-01-22 2021-04-09
CVE-2018-19634 json CA Service Desk Manager 14.1 and 17 contain a vulnerability that can allow a malicious actor to access survey information. 7.5 - HIGH 2019-01-22 2021-04-09
CVE-2018-15691 json Insecure deserialization of a specially crafted serialized object, in CA Release Automation 6.5 and earlier, allows attackers... 9.8 - CRITICAL 2018-08-30 2021-04-12
CVE-2018-13826 json An XML external entity vulnerability in the XOG functionality, in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and ... 9.1 - CRITICAL 2018-08-30 2021-04-12
CVE-2018-13825 json Insufficient input validation in the gridExcelExport functionality, in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below,... 6.1 - MEDIUM 2018-08-30 2021-04-12
CVE-2018-13824 json Insufficient input sanitization of two parameters in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and ... 9.8 - CRITICAL 2018-08-30 2021-04-12
CVE-2018-13823 json An XML external entity vulnerability in the XOG functionality, in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and ... 7.5 - HIGH 2018-08-30 2021-04-12
CVE-2018-13822 json Unprotected storage of credentials in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and below, allows a... 7.5 - HIGH 2018-08-30 2021-04-12
CVE-2018-13821 json A lack of authentication, in CA Unified Infrastructure Management 8.5.1, 8.5, and 8.4.7, allows remote attackers to conduct a... 9.8 - CRITICAL 2018-08-30 2018-11-05
CVE-2018-13820 json A hardcoded passphrase, in CA Unified Infrastructure Management 8.5.1, 8.5, and 8.4.7, allows attackers to access sensitive i... 7.5 - HIGH 2018-08-30 2018-10-19

Known software with vulnerabilities from Ca

Type Vendor Product Version
ApplicationCa2e Web Optionr8.1.2
ApplicationCaAdvantage Data Transport-
ApplicationCaAdviseit-
ApplicationCaAlert Notification Server-
ApplicationCaAnti-spyware2007
ApplicationCaAnti-spyware For The Enterprise8.1
ApplicationCaAnti-virus2007
ApplicationCaAnti-virus For The Enterprise-
ApplicationCaAnti-virus Sdk-
ApplicationCaAntispyware For The Enterprise-
ApplicationCaAntivirus Gateway7.1
ApplicationCaAntivirus Sdk-
ApplicationCaAnti Virus Sdk-
ApplicationCaApi Gateway-
ApplicationCaApplication Configuration Manager Agent12.0.1.0
ApplicationCaArcserve Backup-
ApplicationCaArcserve Backup 2000-
ApplicationCaArcserve Backup Agent For Open Files For Windows12.0.0.0
ApplicationCaArcserve Backup Client Agent For Windows12.0.0.0
ApplicationCaArcserve Client Agent-