An authentication bypass vulnerability in CA Privileged Access Manager 2.8.2 and earlier allows remote attackers to execute arbitrary commands with specially crafted requests.
References
Link | Resource |
---|---|
https://support.ca.com/us/product-content/recommended-reading/security-notices/ca20180614-01--security-notice-for-ca-privileged-access-manager.html | Broken Link |
http://www.securityfocus.com/bid/104496 | Third Party Advisory VDB Entry |
http://packetstormsecurity.com/files/155576/Broadcom-CA-Privileged-Access-Manager-2.8.2-Remote-Command-Execution.html | Exploit Third Party Advisory VDB Entry |
Configurations
Information
Published : 2018-06-18 11:29
Updated : 2021-04-13 13:23
NVD link : CVE-2018-9021
Mitre link : CVE-2018-9021
JSON object : View
CWE
CWE-269
Improper Privilege Management
Products Affected
broadcom
- privileged_access_manager