CVE-2018-8954

CA Workload Control Center before r11.4 SP6 allows remote attackers to execute arbitrary code via a crafted HTTP request.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ca:workload_control_center:*:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_control_center:sp1:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_control_center:sp2:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_control_center:sp3:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_control_center:sp4:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_control_center:sp5:*:*:*:*:*:*:*

History

21 Nov 2024, 04:14

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/103742 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/103742 - Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1040605 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1040605 - Third Party Advisory, VDB Entry
References () https://support.ca.com/us/product-content/recommended-reading/security-notices/ca20180329-01--security-notice-for-ca-workload-automation-ae.html - Vendor Advisory () https://support.ca.com/us/product-content/recommended-reading/security-notices/ca20180329-01--security-notice-for-ca-workload-automation-ae.html - Vendor Advisory

Information

Published : 2018-04-11 17:29

Updated : 2024-11-21 04:14


NVD link : CVE-2018-8954

Mitre link : CVE-2018-8954

CVE.ORG link : CVE-2018-8954


JSON object : View

Products Affected

ca

  • workload_control_center
CWE
CWE-20

Improper Input Validation