Insecure File Creation and Handling in CA Automic Automation by Broadcom
CVE-2022-33753

8.8HIGH

Key Information:

Vendor
Broadcom
Vendor
CVE Published:
16 June 2022

Summary

The CA Automic Automation versions 12.2 and 12.3 are affected by an insecure file creation and handling vulnerability in the Automic agent. This flaw could enable an attacker with user privileges to elevate their access rights, potentially leading to unauthorized actions. Proper file handling and secure coding practices should be implemented to mitigate this risk effectively.

Affected Version(s)

CA Automic Automation 12.2, 12.3

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.