CVE-2019-7392: Broadcom Privileged Access Manager
Critical severity, CVSS 9.1. EPSS: 1.7% chance of exploitation in the next 30 days.
An improper authentication vulnerability in CA Privileged Access Manager 3.x Web-UI jk-manager and jk-status allows a remote attacker to gain sensitive information or alter configuration.
Affected products
- Broadcom Privileged Access Manager: from 3.0.1, up to and including 3.0.3; from 3.1.1, up to and including 3.1.2; from 3.2.0, up to and including 3.2.1
Published 2019-02-26. Last modified 2026-06-17.