CVE-2024-38499

CA Client Automation (ITCM) allows non-admin/non-root users to encrypt a string using CAF CLI and SD_ACMD CLI. This would allow the non admin user to access the critical encryption keys which further causes the exploitation of stored credentials. This fix doesn't allow a non-admin/non-root user to execute "caf encrypt"/"sd_acmd encrypt" commands.
Configurations

No configuration.

History

19 Dec 2024, 06:15

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2024/Dec/16 -
Summary
  • (es) CA Client Automation (ITCM) permite que los usuarios que no sean administradores o superusuario encripten una cadena mediante la CLI de CAF y la CLI de SD_ACMD. Esto permitiría que el usuario que no sea administrador acceda a las claves de cifrado críticas, lo que además provoca la explotación de las credenciales almacenadas. Esta solución no permite que un usuario que no sea administrador o superusuario ejecute los comandos "caf encrypt" o "sd_acmd encrypt".

17 Dec 2024, 15:15

Type Values Removed Values Added
CWE CWE-276
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8

17 Dec 2024, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-17 06:15

Updated : 2024-12-19 06:15


NVD link : CVE-2024-38499

Mitre link : CVE-2024-38499

CVE.ORG link : CVE-2024-38499


JSON object : View

Products Affected

No product.

CWE
CWE-269

Improper Privilege Management

CWE-276

Incorrect Default Permissions