Back

CVE-2019-13656

CRITICAL

An access vulnerability in CA Common Services DIA of CA Technologies Client Automation 14 and Workload Automation AE 11.3.5, 11.3.6 allows a remote attacker to execute arbitrary code.

Published: Sep 6, 2019 Modified: Jun 17, 2026
CWE-284 NVD-CWE-noinfo

CVSS Metrics

CVSSv3
Attack Vector: NETWORK Attack Complexity: LOW Privileges Required: NONE User Interaction: NONE Scope: UNCHANGED Confidentiality Impact: HIGH Integrity Impact: HIGH Availability Impact: HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products (3)

Vendor Product Version
broadcom ca_client_automation 14.0
broadcom ca_workload_automation_ae 11.3.5
broadcom ca_workload_automation_ae 11.3.6

GitHub Security Advisory GHSA-wc4j-6w9r-crwf

An access vulnerability in CA Common Services DIA of CA Technologies Client Automation 14 and...

Risk Scores

CVSS Score 9.8 / 10
EPSS Score 5.82%

Top 7% most likely to be exploited

Threat Score 40.9 / 100

Data Sources

NVD EPSS GitHub