CVE-2018-13822

Severity
7.5HIGH
EPSS
0.2%
top 51.86%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 30
Latest updateMay 13

Description

Unprotected storage of credentials in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and below, allows attackers to access sensitive information.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

CVEListV5ca_technologies/ppm15.3 and earlier

Patches

🔴Vulnerability Details

2
GHSA
GHSA-6gcp-h783-vwfp: Unprotected storage of credentials in CA PPM 142022-05-13
CVEList
CVE-2018-13822: Unprotected storage of credentials in CA PPM 142018-08-30