CVE-2018-15691
- EPSS 47.43%
- Published 30.08.2018 14:29:01
- Last modified 21.11.2024 03:51:17
Insecure deserialization of a specially crafted serialized object, in CA Release Automation 6.5 and earlier, allows attackers to potentially execute arbitrary code.
CVE-2015-8699
- EPSS 0.38%
- Published 29.06.2016 01:59:01
- Last modified 12.04.2025 10:46:40
Multiple cross-site scripting (XSS) vulnerabilities in CA Release Automation (formerly LISA Release Automation) 5.0.2 before 5.0.2-227, 5.5.1 before 5.5.1-1616, 5.5.2 before 5.5.2-434, and 6.1.0 before 6.1.0-1026 allow remote attackers to inject arbi...
CVE-2015-8698
- EPSS 0.26%
- Published 29.06.2016 01:59:00
- Last modified 12.04.2025 10:46:40
CA Release Automation (formerly LISA Release Automation) 5.0.2 before 5.0.2-227, 5.5.1 before 5.5.1-1616, 5.5.2 before 5.5.2-434, and 6.1.0 before 6.1.0-1026 allows remote attackers to read arbitrary files or cause a denial of service via a request c...
CVE-2014-8248
- EPSS 0.7%
- Published 16.12.2014 23:59:06
- Last modified 12.04.2025 10:46:40
SQL injection vulnerability in CA Release Automation (formerly iTKO LISA Release Automation) before 4.7.1 b448 allows remote authenticated users to execute arbitrary SQL commands via a crafted query.
CVE-2014-8247
- EPSS 1.22%
- Published 16.12.2014 23:59:05
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in CA Release Automation (formerly iTKO LISA Release Automation) before 4.7.1 b448 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2014-8246
- EPSS 0.2%
- Published 16.12.2014 23:59:03
- Last modified 12.04.2025 10:46:40
Cross-site request forgery (CSRF) vulnerability in CA Release Automation (formerly iTKO LISA Release Automation) before 4.7.1 b448 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.