Cross-Site Scripting Vulnerability in CA Automic Workload Automation Web Interface
CVE-2019-6504
Key Information:
- Vendor
- CVE Published:
- 24 January 2019
What is CVE-2019-6504?
The Automic Web Interface (AWI) in CA Automic Workload Automation versions 12.0 to 12.2 has a vulnerability due to insufficient output sanitization. This flaw could allow attackers to execute persistent cross-site scripting (XSS) attacks by crafting malicious objects, potentially compromising user data and enabling unauthorized actions within the application.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
CA Automic Workload Automation CA Automic Workload Automation 12.0 prior to Automic.Web.Interface 12.0.6 HF2 CA Automic Workload Automation 12.1 prior to Automic.Web.Interface 12.1.3 HF3 CA Automic Workload Automation 12.2 prior to Automic.Web.Interface 12.2.1 HF1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
