CVE-2018-8954: Ca Workload Control Center
Critical severity, CVSS 9.8. EPSS: 7% chance of exploitation in the next 30 days.
CA Workload Control Center before r11.4 SP6 allows remote attackers to execute arbitrary code via a crafted HTTP request.
Affected products
- Ca Workload Control Center: up to and including r11.4; version sp1 only; version sp2 only; version sp3 only; version sp4 only; version sp5 only
Published 2018-04-11. Last modified 2026-06-17.