9.8
CVSSv3

CVE-2018-15691

Published: 30/08/2018 Updated: 12/04/2021
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Insecure deserialization of a specially crafted serialized object, in CA Release Automation 6.5 and previous versions, allows malicious users to potentially execute arbitrary code.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

broadcom release automation

Exploits

# Exploit Title: CA Release Automation NiMi 65 - Remote Command Execution # Date: 2016-06-23 # Exploit Authors: Jakub Palaczynski, Maciej Grabiec # Vendor Homepage: wwwcacom/ # Software Link: docopscacom/ca-release-automation/5-5-2/en/installation/deploy-agents/ # Version: CA Release Automation (NiMi) 5X, 63, 64, 65 # CVE: C ...
CA Release Automation NiMi version 65 suffers from a remote command execution vulnerability ...

Mailing Lists

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 CA20180829-03: Security Notice for CA Release Automation Issued: August 29, 2018 Last Updated: August 29, 2018 CA Technologies Support is alerting customers to a potential risk with CA Release Automation A vulnerability exists that can allow an attacker to potentially execute arbitrary code ...