CVE-2019-7394: High severity ca risk authentication vulnerability
A privilege escalation vulnerability in the administrative user interface of CA Technologies CA Strong Authentication 9.0.x, 8.2.x, 8.1.x, 8.0.x, 7.1.x and CA Risk Authentication 9.0.x, 8.2.x, 8.1.x, 8.0.x, 3.1.x allows an authenticated attacker to gain additional privileges in some cases where an account has customized and limited privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-7394?
CVE-2019-7394 has been classified as a medium severity vulnerability due to its potential for privilege escalation.
How do I fix CVE-2019-7394?
To fix CVE-2019-7394, it is recommended to update CA Strong Authentication and CA Risk Authentication to the latest versions that address this vulnerability.
Who is affected by CVE-2019-7394?
CVE-2019-7394 affects users of CA Strong Authentication and CA Risk Authentication versions 7.1, 8.0 to 8.2.1, and 9.0.
What type of attack does CVE-2019-7394 allow?
CVE-2019-7394 allows an authenticated attacker to escalate privileges within the administrative user interface.
Is CVE-2019-7394 a remote vulnerability?
CVE-2019-7394 is not a remote vulnerability; it requires an authenticated user to exploit it.