CVE-2017-8391: Ca Client Automation
Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.
The OS Installation Management component in CA Client Automation r12.9, r14.0, and r14.0 SP1 places an encrypted password into a readable local file during operating system installation, which allows local users to obtain sensitive information by reading this file after operating system installation.
Affected products
- Ca Client Automation: version r12.9 only; version r14.0 only
Published 2017-05-06. Last modified 2026-06-17.