Medium Vulnerability in SAP Enterprise Manager
search cancel

Medium Vulnerability in SAP Enterprise Manager

book

Article ID: 415392

calendar_today

Updated On:

Products

CA Application Performance Management (APM / Wily / Introscope)

Issue/Introduction

security team has come across a medium vulnerability in the Enterprise manager.

Reflected Cross-Site Scripting (XSS) in CA Wily Introscope Enterprise Manager

CWE-79:  Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Environment

Red Hat Enterprise Linux release 8.10

CA Application Performance Management (APM / Wily / Introscope) Release: 10.8.1.6 (Build 990006)

Resolution

Engineering team has provided the new installer which includes the fix for the reported Medium Vulnerability in Enterprise Manager. This fix will be included in APM 10.8 SP2.