PT-2018-17650 · Ca · Ca Api Developer Portal

Published

2018-03-29

·

Updated

2023-01-27

·

CVE-2018-6586

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions CA API Developer Portal versions 3.5 up to and including 3.5 CR6
Description The issue is related to a stored cross-site scripting vulnerability in the processing of profile pictures.
Recommendations For CA API Developer Portal versions 3.5 up to and including 3.5 CR6, update to a version that includes the fix for this issue to prevent exploitation.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2018-6586

Affected Products

Ca Api Developer Portal