The OS Installation Management component in CA Client Automation r12.9, r14.0, and r14.0 SP1 places an encrypted password into a readable local file during operating system installation, which allows local users to obtain sensitive information by reading this file after operating system installation.
2017-05-06T00:29:00.523
2025-04-20T01:37:25.860
Deferred
CVSSv3.0: 5.5 (MEDIUM)
AV:L/AC:L/Au:N/C:P/I:N/A:N
3.9
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ca | client_automation | r12.9 | Yes |
Application | ca | client_automation | r14.0 | Yes |
Application | ca | client_automation | r14.0 | Yes |
Operating System | linux | linux_kernel | * | No |
Operating System | microsoft | windows | * | No |