Back

CVE-2019-13658

CRITICAL

CA Network Flow Analysis 9.x and 10.0.x have a default credential vulnerability that can allow a remote attacker to execute arbitrary commands and compromise system security.

Published: Oct 2, 2019 Modified: Jun 17, 2026
CWE-798 CWE-798

CVSS Metrics

CVSSv3
Attack Vector: NETWORK Attack Complexity: LOW Privileges Required: NONE User Interaction: NONE Scope: UNCHANGED Confidentiality Impact: HIGH Integrity Impact: HIGH Availability Impact: HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products (2)

Vendor Product Version
broadcom network_flow_analysis * ≥ 9.3.1
broadcom network_flow_analysis 10.0.0

GitHub Security Advisory GHSA-4rg6-4q55-x5wx

CA Network Flow Analysis 9.x and 10.0.x have a default credential vulnerability that can allow a...

Risk Scores

CVSS Score 9.8 / 10
EPSS Score 3.44%

Top 12% most likely to be exploited

Threat Score 40.2 / 100

Data Sources

NVD EPSS GitHub