First published: Wed Apr 15 2020(Updated: )
CA API Developer Portal 4.3.1 and earlier contains an access control flaw that allows privileged users to view and edit user data.
Credit: vuln@ca.com
Affected Software | Affected Version | How to fix |
---|---|---|
CA API Developer Portal | >=4.0<=4.3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-11661 is considered a high-severity vulnerability due to its potential impact on user data privacy.
To mitigate CVE-2020-11661, it is recommended to upgrade the CA API Developer Portal to version 4.3.2 or later, which addresses the access control flaw.
Users of CA API Developer Portal versions 4.3.1 and earlier are affected by CVE-2020-11661.
CVE-2020-11661 is an access control vulnerability that allows privileged users to improperly view and edit user data.
CVE-2020-11661 was disclosed in April 2020.