CVE-2019-7392

CRITICAL

CA Privileged Access Manager 3.x - Info Disclosure

Title source: llm
STIX 2.1

Description

An improper authentication vulnerability in CA Privileged Access Manager 3.x Web-UI jk-manager and jk-status allows a remote attacker to gain sensitive information or alter configuration.

Scores

CVSS v3 9.1
EPSS 0.0045
EPSS Percentile 63.8%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Details

CWE
CWE-287
Status published
Products (1)
broadcom/privileged_access_manager 3.0.1 - 3.0.3
Published Feb 26, 2019
Tracked Since Feb 18, 2026