CA Clarity 15.8 and below and 15.9.0 contain an insecure XML parsing vulnerability that could allow a remote attacker to potentially view the contents of any file on the system.
References
Link | Resource |
---|---|
https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/20645 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-06-16 15:15
Updated : 2022-06-28 08:14
NVD link : CVE-2022-33739
Mitre link : CVE-2022-33739
JSON object : View
CWE
CWE-91
XML Injection (aka Blind XPath Injection)
Products Affected
broadcom
- ca_clarity