CVE-2014-8472: Medium severity ca cloud service management vulnerability
CA Cloud Service Management (CSM) before Summer 2014 does not properly verify authentication tokens from an Identity Provider, which allows user-assisted remote attackers to bypass intended access restrictions via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2014-8472?
CVE-2014-8472 is considered a high severity vulnerability due to its potential to allow unauthorized access.
How do I fix CVE-2014-8472?
To mitigate CVE-2014-8472, update your CA Cloud Service Management to a version released after the Summer 2014 patch.
What impact does CVE-2014-8472 have on users?
CVE-2014-8472 can allow attackers to bypass access restrictions, leading to unauthorized actions by authenticated users.
Who is affected by CVE-2014-8472?
CVE-2014-8472 affects users of CA Cloud Service Management versions prior to Summer 2014.
Is there any workaround for CVE-2014-8472?
There are no official workarounds for CVE-2014-8472; upgrading to a patched version is the recommended action.