Skip to main content

Vendor archive

ca CVEs

Beta · best-effort

138 CVEs tagged to vendor ca48 Critical, 42 High, 45 Medium, 3 Low, 0 Unrated.

CVE-2011-1899

Published May 16, 2011

Multiple cross-site scripting (XSS) vulnerabilities in CA eHealth 6.0.x, 6.1.x, 6.2.1, and 6.2.2 allow remote attackers to inject arbitrary web script or HTML via unspecified para…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-1718

Published Apr 27, 2011

The Web Agents component in CA SiteMinder R6 before SP6 CR2 and R12 before SP3 CR2 does not properly handle multi-line headers, which allows remote authenticated users to conduct…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4502

Published Dec 8, 2010

Integer overflow in KmxSbx.sys 6.2.0.22 in CA Internet Security Suite Plus 2010 allows local users to cause a denial of service (pool corruption) and execute arbitrary code via cr…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2010-0640

Published Feb 24, 2010

Cross-site scripting (XSS) vulnerability in CA eHealth Performance Manager 6.0.x through 6.2.x, when malicious HTML detection is disabled, allows remote attackers to inject arbitr…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2009-4149

Published Dec 9, 2009

Cross-site scripting (XSS) vulnerability in the web interface in CA Service Desk 12.1 allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-4225

Published Dec 8, 2009

Stack-based buffer overflow in the PestPatrol ActiveX control (ppctl.dll) 5.6.7.9 in CA eTrust PestPatrol allows remote attackers to execute arbitrary code via a long argument to…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-2740

Published Aug 19, 2009

kmxIds.sys before 7.3.1.18 in CA Host-Based Intrusion Prevention System (HIPS) 8.1 allows remote attackers to cause a denial of service (system crash) via a malformed packet.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0682

Published Aug 19, 2009

vetmonnt.sys in CA Internet Security Suite r3, vetmonnt.sys before 9.0.0.184 in Internet Security Suite r4, and vetmonnt.sys before 10.0.0.217 in Internet Security Suite r5 do not…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2009-1761

Published Jun 16, 2009

The message engine in CA ARCserve Backup r12.0 and r12.0 SP1 for Windows allows remote attackers to cause a denial of service (crash) via (1) an invalid 0x13 message, which is not…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 51-75 of 138 CVEsPage 3 of 6