CVE-2019-7392: Critical severity broadcom privileged access manager vulnerability
An improper authentication vulnerability in CA Privileged Access Manager 3.x Web-UI jk-manager and jk-status allows a remote attacker to gain sensitive information or alter configuration.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-7392?
CVE-2019-7392 presents a medium severity risk due to improper authentication in CA Privileged Access Manager.
How does CVE-2019-7392 affect CA Privileged Access Manager?
CVE-2019-7392 allows a remote attacker to gain sensitive information or alter configurations through the Web-UI.
Which versions of CA Privileged Access Manager are impacted by CVE-2019-7392?
CVE-2019-7392 affects versions 3.0.1 to 3.0.3, 3.1.1 to 3.1.2, and 3.2.0 to 3.2.1 of CA Privileged Access Manager.
How do I fix CVE-2019-7392?
To mitigate CVE-2019-7392, upgrade your CA Privileged Access Manager to a patched version that resolves the authentication vulnerability.
Can CVE-2019-7392 lead to unauthorized access?
Yes, CVE-2019-7392 can enable unauthorized access to sensitive information by exploiting improper authentication.