Описание
The smmsnmpd service in CA Service Metric Analysis r11.0 through r11.1 SP1 and Service Level Management 3.5 does not properly restrict access, which allows remote attackers to execute arbitrary commands via unspecified vectors.
Ссылки
- Vendor Advisory
- Patch
- Patch
- Vendor Advisory
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ca:service_level_management:3.5:*:*:*:*:*:*:*
cpe:2.3:a:ca:service_metric_analysis:r11.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:service_metric_analysis:r11.1:*:*:*:*:*:*:*
cpe:2.3:a:ca:service_metric_analysis:r11.1:sp1:*:*:*:*:*:*
EPSS
Процентиль: 98%
0.50795
Средний
10 Critical
CVSS2
Дефекты
CWE-264
Связанные уязвимости
github
почти 4 года назад
The smmsnmpd service in CA Service Metric Analysis r11.0 through r11.1 SP1 and Service Level Management 3.5 does not properly restrict access, which allows remote attackers to execute arbitrary commands via unspecified vectors.
EPSS
Процентиль: 98%
0.50795
Средний
10 Critical
CVSS2
Дефекты
CWE-264