CVE-2020-11663: Medium severity ca api developer portal vulnerability
Published Apr 15, 2020
·Updated
CA API Developer Portal 4.3.1 and earlier handles 404 requests in an insecure manner, which allows attackers to perform open redirect attacks.
Affected Software
1 affected component
Broadcom Ca Api Developer Portal>=4.0<=4.3.1
Event History
Apr 15, 2020
CVE Published
via MITRE·07:08 PM
Data Sourced
via MITRE·07:08 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-11663?
CVE-2020-11663 is classified as a medium severity vulnerability due to its potential for open redirect attacks.
2
How do I fix CVE-2020-11663?
To fix CVE-2020-11663, upgrade CA API Developer Portal to version 4.3.2 or later.
3
What types of attacks can be executed using CVE-2020-11663?
Attackers can exploit CVE-2020-11663 to perform open redirect attacks which may lead to phishing or unwanted redirection.
4
Which versions of CA API Developer Portal are affected by CVE-2020-11663?
CVE-2020-11663 affects CA API Developer Portal versions 4.3.1 and earlier.
5
What mechanism is exploited in CVE-2020-11663?
CVE-2020-11663 exploits the insecure handling of 404 requests in CA API Developer Portal.