A UI redress vulnerability in the administrative user interface of CA Technologies CA Strong Authentication 9.0.x, 8.2.x, 8.1.x, 8.0.x, 7.1.x and CA Risk Authentication 9.0.x, 8.2.x, 8.1.x, 8.0.x, 3.1.x may allow a remote attacker to gain sensitive information in some cases.
References
Link | Resource |
---|---|
https://support.ca.com/us/product-content/recommended-reading/security-notices/CA20190523-01--security-notice-for-ca-risk-authentication-and-ca-strong-authentication.html | Vendor Advisory |
https://seclists.org/bugtraq/2019/May/66 | Mailing List Third Party Advisory |
http://www.securityfocus.com/bid/108483 | Third Party Advisory VDB Entry |
http://packetstormsecurity.com/files/153089/CA-Risk-Strong-Authentication-Privilege-Escalation.html | Third Party Advisory VDB Entry |
http://seclists.org/fulldisclosure/2019/May/43 | Mailing List Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2019-05-28 12:29
Updated : 2020-10-06 07:28
NVD link : CVE-2019-7393
Mitre link : CVE-2019-7393
JSON object : View
CWE
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
Products Affected
ca
- risk_authentication
- strong_authentication