9.8
CVSSv3

CVE-2018-13824

Published: 30/08/2018 Updated: 12/04/2021
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Insufficient input sanitization of two parameters in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and below, allows remote malicious users to execute SQL injection attacks.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ca project portfolio management 15.3

ca project portfolio management 15.2

broadcom project portfolio management 15.1

broadcom project portfolio management 14.4

broadcom project portfolio management

Mailing Lists

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 CA20180829-01: Security Notice for CA PPM Issued: August 29, 2018 Last Updated: August 29, 2018 CA Technologies Support is alerting customers to multiple potential risks with CA PPM (formerly CA Clarity PPM) Multiple vulnerabilities exist that can allow an attacker to conduct a variety of attack ...