Portal 5.2.1 is vulnerable against mentioned CVE ?
search cancel

Portal 5.2.1 is vulnerable against mentioned CVE ?

book

Article ID: 270733

calendar_today

Updated On:

Products

CA API Developer Portal

Issue/Introduction

Could you confirm, whether portal 5.2.1 is vulnerable against these CVE's.

CVE-2022-2047 
CVE-2021-34428 
CVE-2021-28169 
CVE-2021-28165 
CVE-2020-27223 
CVE-2020-27218 
CVE-2020-27216

CVE-2019-10247 
CVE-2019-10241 
CVE-2018-12545 

Environment

Release : 5.2.1

Resolution

Engineering informed the following
the following CVE can be ignored.

CVE-2022-2047 ignored
CVE-2021-34428 ignored
CVE-2021-28169  ignored
CVE-2021-28165 ignored
CVE-2020-27216 ignored
CVE-2018-12545 not affected

** The Following CVE :

CVE-2020-27223

CVE-2020-27218

CVE-2019-10247

CVE-2019-1024

are due to the jetty version we are currently using. The fix will be provided on upgrade jetty before the next release.