CVE-2015-3318

CA Common Services, as used in CA Client Automation r12.5 SP01, r12.8, and r12.9; CA Network and Systems Management r11.0, r11.1, and r11.2; CA NSM Job Management Option r11.0, r11.1, and r11.2; CA Universal Job Management Agent; CA Virtual Assurance for Infrastructure Managers (aka SystemEDGE) 12.6, 12.7, 12.8, and 12.9; and CA Workload Automation AE r11, r11.3, r11.3.5, and r11.3.6 on UNIX, does not properly validate an unspecified variable, which allows local users to gain privileges via unknown vectors.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ca:client_automation:r12.5:sp01:*:*:*:*:*:*
cpe:2.3:a:ca:client_automation:r12.8:*:*:*:*:*:*:*
cpe:2.3:a:ca:client_automation:r12.9:*:*:*:*:*:*:*
cpe:2.3:a:ca:network_and_systems_management:r11.2:*:*:*:*:*:*:*
cpe:2.3:a:ca:nsm_job_management_option:r11.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:nsm_job_management_option:r11.1:*:*:*:*:*:*:*
cpe:2.3:a:ca:nsm_job_management_option:r11.2:*:*:*:*:*:*:*
cpe:2.3:a:ca:universal_job_management_agent:-:*:*:*:*:*:*:*
cpe:2.3:a:ca:virtual_assurance_for_infrastructure_managers:12.6:*:*:*:*:*:*:*
cpe:2.3:a:ca:virtual_assurance_for_infrastructure_managers:12.7:*:*:*:*:*:*:*
cpe:2.3:a:ca:virtual_assurance_for_infrastructure_managers:12.8:*:*:*:*:*:*:*
cpe:2.3:a:ca:virtual_assurance_for_infrastructure_managers:12.9:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_automation_ae:r11.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_automation_ae:r11.3:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_automation_ae:r11.3.5:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_automation_ae:r11.3.6:*:*:*:*:*:*:*
OR cpe:2.3:o:hp:hp-ux:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:oracle:solaris:-:*:*:*:*:*:*:*

History

09 Apr 2021, 18:50

Type Values Removed Values Added
CPE cpe:2.3:a:ca:network_and_systems_management:r11.1:*:*:*:*:*:*:*
cpe:2.3:a:ca:network_and_systems_management:r11:*:*:*:*:*:*:*

Information

Published : 2015-06-17 10:59

Updated : 2023-12-10 11:46


NVD link : CVE-2015-3318

Mitre link : CVE-2015-3318

CVE.ORG link : CVE-2015-3318


JSON object : View

Products Affected

oracle

  • solaris

ca

  • network_and_systems_management
  • nsm_job_management_option
  • virtual_assurance_for_infrastructure_managers
  • universal_job_management_agent
  • client_automation
  • workload_automation_ae

ibm

  • aix

hp

  • hp-ux

linux

  • linux_kernel
CWE
CWE-20

Improper Input Validation