← Back to browse · API

CVE-2019-13657

Severity
CRITICAL
CVSS
9.8
EPSS
0.02502
Risk score
40.08
CISA KEV
No
PoC
No
Published
2019-10-17
Modified
2024-09-17
First seen
2026-08-07
Aliases
EUVD-2019-5077, GHSA-CX3H-87P4-85CJ
Products
CA Technologies, A Broadcom Company:CA Performance Management 3.5.x, CA Technologies, A Broadcom Company:CA Performance Management 3.6.x before 3.6.9, CA Technologies, A Broadcom Company:CA Performance Management 3.7.x before 3.7.4
Sources
euvd EUVD-2019-5077

Description

CA Performance Management 3.5.x, 3.6.x before 3.6.9, and 3.7.x before 3.7.4 have a default credential vulnerability that can allow a remote attacker to execute arbitrary commands and compromise system security.

References