CVE-2006-6641 Details
Description
Unspecified vulnerability in CA CleverPath Portal before maintenance version 4.71.001_179_060830, as used in multiple products including BrightStor Portal r11.1, CleverPath Aion BPM r10 through r10.2, eTrust Security Command Center r1 and r8, and Unicenter, does not properly handle when multiple Portal servers are started at the same time and share the same data store, which might cause a Portal user to inherit the session and credentials of a user who is on another Portal server.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No CVSS 3.x data is available for this CVE.
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-Other | Weakness Not in a Standard CWE Category | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| arcserve brightstor | 11.1 |
CPE
Remediation
| |
| broadcom cleverpath portal | <= 4.71 |
CPE
Remediation
| |
| cleverpath aion bpm | r10 r10.1 r10.2 |
CPE
Remediation
| |
| cleverpath portal | r4.7 r4.51 r4.71 |
CPE
Remediation
| |
| etrust security command center | r1 r8 |
CPE
Remediation
| |
| unicenter asset and portfolio management | r11 |
CPE
Remediation
| |
| unicenter database command center | r11.1 |
CPE
Remediation
| |
| unicenter database management portal | r11 |
CPE
Remediation
| |
| unicenter enterprise job manager | r1_sp3 |
CPE
Remediation
| |
| unicenter management portal | r2.0 r3.1 r11.0 |
CPE
Remediation
| |
| unicenter workload control center | r1_sp4 |
CPE
Remediation
| |
Change History
7 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 16, 2026 | CVE Modified | [email protected] |
| Apr 23, 2026 | Status Change | [email protected] |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Apr 7, 2021 | CPE Deprecation Remap | [email protected] |
| Oct 17, 2018 | CVE Modified | [email protected] |
| Dec 20, 2006 | Initial Analysis | [email protected] |