Insecure File Creation and Handling in CA Automic Automation by Broadcom
CVE-2022-33753
8.8HIGH
Summary
The CA Automic Automation versions 12.2 and 12.3 are affected by an insecure file creation and handling vulnerability in the Automic agent. This flaw could enable an attacker with user privileges to elevate their access rights, potentially leading to unauthorized actions. Proper file handling and secure coding practices should be implemented to mitigate this risk effectively.
Affected Version(s)
CA Automic Automation 12.2, 12.3
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved