High severity8.8NVD Advisory· Published May 28, 2019· Updated Jun 17, 2026
CVE-2019-7394
CVE-2019-7394
Description
A privilege escalation vulnerability in the administrative user interface of CA Technologies CA Strong Authentication 9.0.x, 8.2.x, 8.1.x, 8.0.x, 7.1.x and CA Risk Authentication 9.0.x, 8.2.x, 8.1.x, 8.0.x, 3.1.x allows an authenticated attacker to gain additional privileges in some cases where an account has customized and limited privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10cpe:2.3:a:ca:risk_authentication:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ca:risk_authentication:*:*:*:*:*:*:*:*range: >=8.0,<=8.2.1
- cpe:2.3:a:ca:risk_authentication:3.1:*:*:*:*:*:*:*
- cpe:2.3:a:ca:risk_authentication:9.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:strong_authentication:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ca:strong_authentication:*:*:*:*:*:*:*:*range: >=8.0,<=8.2.1
- cpe:2.3:a:ca:strong_authentication:7.1:*:*:*:*:*:*:*
- cpe:2.3:a:ca:strong_authentication:9.0:*:*:*:*:*:*:*
- Range: 9.0.x, 8.2.x, 8.1.x, 8.0.x, 7.1.x
- Range: 9.0.x, 8.2.x, 8.1.x, 8.0.x, 7.1.x, 3.1.x
9.0.x, 8.2.x, 8.1.x, 8.0.x, 3.1.x+ 1 more
- (no CPE)range: 9.0.x, 8.2.x, 8.1.x, 8.0.x, 3.1.x
- (no CPE)range: 9.0.x
Patches
Vulnerability mechanics
References
5- packetstormsecurity.com/files/153089/CA-Risk-Strong-Authentication-Privilege-Escalation.htmlnvdThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2019/May/43nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/108483nvdThird Party AdvisoryVDB Entry
- seclists.org/bugtraq/2019/May/66nvdMailing ListThird Party Advisory
- support.ca.com/us/product-content/recommended-reading/security-notices/CA20190523-01--security-notice-for-ca-risk-authentication-and-ca-strong-authentication.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.