CVE-2018-8954

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
11/04/2018
Last modified:
17/05/2018

Description

CA Workload Control Center before r11.4 SP6 allows remote attackers to execute arbitrary code via a crafted HTTP request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ca:workload_control_center:*:*:*:*:*:*:*:* r11.4 (including)
cpe:2.3:a:ca:workload_control_center:sp1:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_control_center:sp2:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_control_center:sp3:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_control_center:sp4:*:*:*:*:*:*:*
cpe:2.3:a:ca:workload_control_center:sp5:*:*:*:*:*:*:*