PT-2019-13465 · Ca · Ca Performance Management

Publicado

2019-10-17

·

Atualizado

2019-10-24

·

CVE-2019-13657

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions CA Performance Management versions 3.5.x through 3.6.8 and versions 3.7.x through 3.7.3
Description The issue allows a remote attacker to execute arbitrary commands and compromise system security due to a default credential vulnerability.
Recommendations For versions 3.5.x, update to a version after 3.5.x. For versions 3.6.x, update to version 3.6.9 or later. For versions 3.7.x, update to version 3.7.4 or later.

Correção

Using Hardcoded Credentials

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-13657

Produtos afetados

Ca Performance Management