### [CVE-2015-6854](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6854) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description The non-Domino web agents in CA Single Sign-On (aka SSO, formerly SiteMinder) R6, R12.0 before SP3 CR13, R12.0J before SP3 CR1.2, and R12.5 before CR5 allow remote attackers to cause a denial of service (daemon crash) or obtain sensitive information via a crafted request. ### POC #### Reference No PoCs from references. #### Github - https://github.com/cyberworm-uk/exploits - https://github.com/guest42069/exploits