Vulnerability Details CVE-2018-13823
An XML external entity vulnerability in the XOG functionality, in CA PPM 14.3 and below, 14.4, 15.1, 15.2 CP5 and below, and 15.3 CP2 and below, allows remote attackers to access sensitive information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 68.3%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2018-13823
-
cpe:2.3:a:broadcom:project_portfolio_management:14.2
-
cpe:2.3:a:broadcom:project_portfolio_management:14.3
-
cpe:2.3:a:broadcom:project_portfolio_management:14.4
-
cpe:2.3:a:broadcom:project_portfolio_management:15.1
-
cpe:2.3:a:ca:project_portfolio_management:15.2
-
cpe:2.3:a:ca:project_portfolio_management:15.3