CVE-2014-8246
N/A
N/A
Summary
Cross-site request forgery (CSRF) vulnerability in CA Release Automation (formerly iTKO LISA Release Automation) before 4.7.1 b448 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.ca.com/us/support/ca-support-online/product-content/recommended-reading/security-notices/ca20141215-01-security-notice-for-ca-lisa-release-automation.aspx
- http://seclists.org/fulldisclosure/2014/Dec/55
- http://www.kb.cert.org/vuls/id/343060
- http://www.securityfocus.com/archive/1/534246/100/0/threaded
- http://securitytracker.com/id?1031375
References
- http://www.ca.com/us/support/ca-support-online/product-content/recommended-reading/security-notices/ca20141215-01-security-notice-for-ca-lisa-release-automation.aspx
- http://seclists.org/fulldisclosure/2014/Dec/55
- http://www.kb.cert.org/vuls/id/343060
- http://www.securityfocus.com/archive/1/534246/100/0/threaded
- http://securitytracker.com/id?1031375
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.