Vulnerabilities in CA Technologies, A Broadcom Company
6 resultsVexday analysis
CA Technologies apresenta um perfil de risco moderado com 5 vulnerabilidades catalogadas, das quais 2 são críticas (CVSS ≥ 9.0), porém nenhuma está sob exploração ativa conhecida. A ausência de publicações recentes nos últimos 90 dias sugere que o risco é de natureza histórica ou já mitigado, reduzindo a urgência operacional. A fraqueza dominante CWE-1021 (controle arquitetural inadequado) aponta para deficiências estruturais que merecem atenção em avaliações de segurança de software.
CVE-2019-19230CRITICALAn unsafe deserialization vulnerability exists in CA Release Automation (Nolio) 6.6 with the DataManagement component that can allow a remotEPSS 3.8%CVE-2019-13658CRITICALCA Network Flow Analysis 9.x and 10.0.x have a default credential vulnerability that can allow a remote attacker to execute arbitrary commanEPSS 3.4%CVE-2019-7394—A privilege escalation vulnerability in the administrative user interface of CA Technologies CA Strong Authentication 9.0.x, 8.2.x, 8.1.x, 8EPSS 2.9%CVE-2019-13657CRITICALCA Performance Management 3.5.x, 3.6.x before 3.6.9, and 3.7.x before 3.7.4 have a default credential vulnerability that can allow a remote EPSS 2.5%CVE-2019-7393—A UI redress vulnerability in the administrative user interface of CA Technologies CA Strong Authentication 9.0.x, 8.2.x, 8.1.x, 8.0.x, 7.1.EPSS 2.3%CVE-2020-29478—CA Service Catalog 17.2 and 17.3 contain a vulnerability in the default configuration of the Setup Utility that may allow a remote attacker EPSS 1.2%