Known Vulnerabilities for products from Ca

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Ca".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-28250 ** UNSUPPORTED WHEN ASSIGNED ** CA eHealth Performance Manager through 6.3.2.12 is affected by Privilege Escalation via a set... 7.8 - HIGH 2021-03-26 2023-11-07
CVE-2021-28249 ** UNSUPPORTED WHEN ASSIGNED ** CA eHealth Performance Manager through 6.3.2.12 is affected by Privilege Escalation via a Dyn... 8.8 - HIGH 2021-03-26 2023-11-07
CVE-2021-28248 ** UNSUPPORTED WHEN ASSIGNED ** CA eHealth Performance Manager through 6.3.2.12 is affected by Improper Restriction of Excess... 7.5 - HIGH 2021-03-26 2023-11-07
CVE-2021-28247 ** UNSUPPORTED WHEN ASSIGNED ** CA eHealth Performance Manager through 6.3.2.12 is affected by Cross Site Scripting (XSS). Th... 5.4 - MEDIUM 2021-03-26 2023-11-07
CVE-2021-28246 ** UNSUPPORTED WHEN ASSIGNED ** CA eHealth Performance Manager through 6.3.2.12 is affected by Privilege Escalation via a Dyn... 7.8 - HIGH 2021-03-26 2023-11-07
CVE-2019-13658 CA Network Flow Analysis 9.x and 10.0.x have a default credential vulnerability that can allow a remote attacker to execute a... 9.8 - CRITICAL 2019-10-02 2021-04-09
CVE-2019-7394 A privilege escalation vulnerability in the administrative user interface of CA Technologies CA Strong Authentication 9.0.x, ... 8.8 - HIGH 2019-05-28 2020-10-06
CVE-2019-7393 A UI redress vulnerability in the administrative user interface of CA Technologies CA Strong Authentication 9.0.x, 8.2.x, 8.1... 4.3 - MEDIUM 2019-05-28 2020-10-06
CVE-2019-7392 An improper authentication vulnerability in CA Privileged Access Manager 3.x Web-UI jk-manager and jk-status allows a remote ... 9.1 - CRITICAL 2019-02-26 2021-04-12
CVE-2019-6504 Insufficient output sanitization in the Automic Web Interface (AWI), in CA Automic Workload Automation 12.0 to 12.2, allow at... 6.1 - MEDIUM 2019-02-06 2021-04-07
CVE-2018-19635 CA Service Desk Manager 14.1 and 17 contain a vulnerability that can allow a malicious actor to escalate privileges in the us... 9.8 - CRITICAL 2019-01-22 2021-04-09
CVE-2018-19634 CA Service Desk Manager 14.1 and 17 contain a vulnerability that can allow a malicious actor to access survey information. 7.5 - HIGH 2019-01-22 2021-04-09
CVE-2018-15691 Insecure deserialization of a specially crafted serialized object, in CA Release Automation 6.5 and earlier, allows attackers... 9.8 - CRITICAL 2018-08-30 2021-04-12
CVE-2018-13826 An XML external entity vulnerability in the XOG functionality, in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and ... 9.1 - CRITICAL 2018-08-30 2021-04-12
CVE-2018-13825 Insufficient input validation in the gridExcelExport functionality, in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below,... 6.1 - MEDIUM 2018-08-30 2021-04-12
CVE-2018-13824 Insufficient input sanitization of two parameters in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and ... 9.8 - CRITICAL 2018-08-30 2021-04-12
CVE-2018-13823 An XML external entity vulnerability in the XOG functionality, in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and ... 7.5 - HIGH 2018-08-30 2021-04-12
CVE-2018-13822 Unprotected storage of credentials in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and below, allows a... 7.5 - HIGH 2018-08-30 2021-04-12
CVE-2018-13821 A lack of authentication, in CA Unified Infrastructure Management 8.5.1, 8.5, and 8.4.7, allows remote attackers to conduct a... 9.8 - CRITICAL 2018-08-30 2018-11-05
CVE-2018-13820 A hardcoded passphrase, in CA Unified Infrastructure Management 8.5.1, 8.5, and 8.4.7, allows attackers to access sensitive i... 7.5 - HIGH 2018-08-30 2018-10-19

Known software with vulnerabilities from Ca

Type Vendor Product Version
ApplicationCa2e Web Optionr8.1.2
ApplicationCaAdvantage Data Transport-
ApplicationCaAdviseit-
ApplicationCaAlert Notification Server-
ApplicationCaAnti Virus Sdk-
ApplicationCaAnti-spyware2007
ApplicationCaAntispyware For The Enterprise-
ApplicationCaAnti-spyware For The Enterprise8.1
ApplicationCaAnti-virus2007
ApplicationCaAnti-virus For The Enterprise-
ApplicationCaAntivirus Gateway7.1
ApplicationCaAntivirus Sdk-
ApplicationCaAnti-virus Sdk-
ApplicationCaApi Gateway-
ApplicationCaApplication Configuration Manager Agent12.0.1.0
ApplicationCaArcserve Backup-
ApplicationCaArcserve Backup 2000-
ApplicationCaArcserve Backup Agent For Open Files For Windows12.0.0.0
ApplicationCaArcserve Backup Client Agent For Windows12.0.0.0
ApplicationCaArcserve Client Agent-