The OS Installation Management component in CA Client Automation r12.9, r14.0, and r14.0 SP1 places an encrypted password into a readable local file during operating system installation, which allows local users to obtain sensitive information by reading this file after operating system installation.
References
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 03:33
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/98344 - Third Party Advisory, VDB Entry | |
References | () http://www.securitytracker.com/id/1038410 - | |
References | () https://www.ca.com/us/services-support/ca-support/ca-support-online/product-content/recommended-reading/security-notices/ca20170504-01-security-notice-for-ca-client-automation-os-installation-mgmt.html - Vendor Advisory |
Information
Published : 2017-05-06 00:29
Updated : 2024-11-21 03:33
NVD link : CVE-2017-8391
Mitre link : CVE-2017-8391
CVE.ORG link : CVE-2017-8391
JSON object : View
Products Affected
linux
- linux_kernel
microsoft
- windows
ca
- client_automation
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource