Vulnerability Description
CA Common Services, as used in CA Client Automation r12.5 SP01, r12.8, and r12.9; CA Network and Systems Management r11.0, r11.1, and r11.2; CA NSM Job Management Option r11.0, r11.1, and r11.2; CA Universal Job Management Agent; CA Virtual Assurance for Infrastructure Managers (aka SystemEDGE) 12.6, 12.7, 12.8, and 12.9; and CA Workload Automation AE r11, r11.3, r11.3.5, and r11.3.6 on UNIX, does not properly validate an unspecified variable, which allows local users to gain privileges via unknown vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ca | Client Automation | r12.5 |
| Ca | Network And Systems Management | r11.2 |
| Ca | Nsm Job Management Option | r11.0 |
| Ca | Universal Job Management Agent | - |
| Ca | Virtual Assurance For Infrastructure Managers | 12.6 |
| Ca | Workload Automation Ae | r11.0 |
| Hp | Hp-Ux | All versions |
| Ibm | Aix | All versions |
| Linux | Linux Kernel | All versions |
| Oracle | Solaris | - |
Related Weaknesses (CWE)
References
- http://www.ca.com/us/support/ca-support-online/product-content/recommended-readiVendor Advisory
- http://www.securityfocus.com/bid/75033
- http://www.securitytracker.com/id/1032512
- http://www.securitytracker.com/id/1032513
- http://www.ca.com/us/support/ca-support-online/product-content/recommended-readiVendor Advisory
- http://www.securityfocus.com/bid/75033
- http://www.securitytracker.com/id/1032512
- http://www.securitytracker.com/id/1032513
FAQ
What is CVE-2015-3318?
CVE-2015-3318 is a vulnerability with a CVSS score of 4.6 (MEDIUM). CA Common Services, as used in CA Client Automation r12.5 SP01, r12.8, and r12.9; CA Network and Systems Management r11.0, r11.1, and r11.2; CA NSM Job Management Option r11.0, r11.1, and r11.2; CA Un...
How severe is CVE-2015-3318?
CVE-2015-3318 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-3318?
Check the references section above for vendor advisories and patch information. Affected products include: Ca Client Automation, Ca Network And Systems Management, Ca Nsm Job Management Option, Ca Universal Job Management Agent, Ca Virtual Assurance For Infrastructure Managers.