CA
CA Project Portfolio Management: vulnerabilities and CVEs
CA Project Portfolio Management has 4 published vulnerabilities, 0 of them in the last 12 months. 2 are rated critical and 0 are listed by CISA as actively exploited.
CVEs4
Last 12 months0
Critical2
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-13826 | Critical (9.1) | 1.8% | — | Aug 30, 2018 | An XML external entity vulnerability in the XOG functionality, in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and below, allows remote attackers to conduct server side request forgery attacks. |
| CVE-2018-13825 | Medium (6.1) | 0.90% | — | Aug 30, 2018 | Insufficient input validation in the gridExcelExport functionality, in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and below, allows remote attackers to execute reflected cross-site scripting… |
| CVE-2018-13824 | Critical (9.8) | 1.8% | — | Aug 30, 2018 | Insufficient input sanitization of two parameters in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and below, allows remote attackers to execute SQL injection attacks. |
| CVE-2018-13823 | High (7.5) | 1.9% | — | Aug 30, 2018 | An XML external entity vulnerability in the XOG functionality, in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and below, allows remote attackers to access sensitive information. |
Other products by CA
Brightstor Arcserve Backup · 19Etrust Secure Content Manager · 15Arcserve Backup · 14Protection Suites · 13Business Protection Suite · 11Etrust Antivirus · 9Etrust Intrusion Detection · 7Anti-virus FOR THE Enterprise · 5Unicenter Software Delivery · 5Client Automation · 5Unicenter Management · 5Unified Infrastructure Management · 5