CVE-2018-13819: High severity CA Unified Infrastructure Management vulnerability
A hardcoded secret key, in CA Unified Infrastructure Management 8.5.1, 8.5, and 8.4.7, allows attackers to access sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-13819?
CVE-2018-13819 is considered a high severity vulnerability due to the presence of a hardcoded secret key that can be exploited.
How do I fix CVE-2018-13819?
To mitigate CVE-2018-13819, update to the latest versions of CA Unified Infrastructure Management that remove the hardcoded secret key.
What versions of CA Unified Infrastructure Management are affected by CVE-2018-13819?
CVE-2018-13819 affects versions 8.4.7, 8.5, and 8.5.1 of CA Unified Infrastructure Management.
What kind of information can be accessed due to CVE-2018-13819?
Exploitation of CVE-2018-13819 can allow attackers to access sensitive information within the affected CA Unified Infrastructure Management systems.
Is there a workaround for CVE-2018-13819 if I cannot immediately upgrade?
Currently, there is no known effective workaround for CVE-2018-13819; upgrading is strongly recommended for security.