Vulnerabilities (CVE)

Filtered by vendor Bmc Subscribe
Total 57 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-18223 1 Bmc 1 Remedy Action Request System 2018-04-09 6.8 MEDIUM 8.1 HIGH
BMC Remedy AR System before 9.1 SP3, when Remedy AR Authentication is enabled, allows attackers to obtain administrative access.
CVE-2016-6599 1 Bmc 1 Track-it\! 2018-02-26 7.5 HIGH 9.8 CRITICAL
BMC Track-It! 11.4 before Hotfix 3 exposes an unauthenticated .NET remoting configuration service (ConfigurationService) on port 9010. This service contains a method that can be used to retrieve a configuration file that contains the application database name, username and password as well as the domain administrator username and password. These are encrypted with a fixed key and IV ("NumaraIT") using the DES algorithm. The domain administrator username and password can only be obtained if the Self-Service component is enabled, which is the most common scenario in enterprise deployments.
CVE-2016-6598 1 Bmc 1 Track-it\! 2018-02-26 10.0 HIGH 9.8 CRITICAL
BMC Track-It! 11.4 before Hotfix 3 exposes an unauthenticated .NET remoting file storage service (FileStorageService) on port 9010. This service contains a method that allows uploading a file to an arbitrary path on the machine that is running Track-It!. This can be used to upload a file to the web root and achieve code execution as NETWORK SERVICE or SYSTEM.
CVE-2016-5063 1 Bmc 1 Server Automation 2018-02-02 5.0 MEDIUM 5.3 MEDIUM
The RSCD agent in BMC Server Automation before 8.6 SP1 Patch 2 and 8.7 before Patch 3 on Windows might allow remote attackers to bypass authorization checks and make an RPC call via unspecified vectors.
CVE-1999-1459 1 Bmc 1 Patrol Agent 2017-12-19 7.2 HIGH N/A
BMC PATROL Agent before 3.2.07 allows local users to gain root privileges via a symlink attack on a temporary file.
CVE-2014-9514 1 Bmc 1 Footprints Service Core 2017-08-31 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting (XSS) vulnerability in BMC Footprints Service Core 11.5.
CVE-2016-9638 1 Bmc 1 Patrol 2017-07-28 7.2 HIGH 7.8 HIGH
In BMC Patrol before 9.13.10.02, the binary "listguests64" is configured with the setuid bit. However, when executing it, it will look for a binary named "virsh" using the PATH environment variable. The "listguests64" program will then run "virsh" using root privileges. This allows local users to elevate their privileges to root.
CVE-2016-2349 1 Bmc 1 Remedy Action Request System 2017-07-27 5.0 MEDIUM 7.5 HIGH
Remedy AR System Server in BMC Remedy 8.1 SP 2, 9.0, 9.0 SP 1, and 9.1 allows attackers to reset arbitrary passwords via a blank previous password.
CVE-2005-3311 1 Bmc 1 Software Control-m Agent 2016-10-18 2.1 LOW N/A
BMC Software Control-M 6.1.03 for Solaris, and possibly other platforms, allows local users to overwrite arbitrary files via a symlink attack on temporary files.
CVE-1999-1460 1 Bmc 1 Patrol Agent 2016-10-18 7.2 HIGH N/A
BMC PATROL SNMP Agent before 3.2.07 allows local users to create arbitrary world-writeable files as root by specifying the target file as the second argument to the snmpmagt program.
CVE-2014-2591 1 Bmc 1 Patrol Agent 2014-06-24 6.9 MEDIUM N/A
Untrusted search path vulnerability in BMC Patrol for AIX 3.9.00 allows local users to gain privileges via a crafted library, related to an incorrect RPATH setting.
CVE-2013-4946 1 Bmc 1 Service Desk Express 2013-07-30 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in BMC Service Desk Express (SDE) 10.2.1.95 allow remote attackers to inject arbitrary web script or HTML via the (1) SelTab parameter to QV_admin.aspx, the (2) CallBack parameter to QV_grid.aspx, or the (3) HelpPage parameter to commonhelp.aspx.
CVE-2013-4945 1 Bmc 1 Service Desk Express 2013-07-30 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in BMC Service Desk Express (SDE) 10.2.1.95 allow remote attackers to execute arbitrary SQL commands via the (1) ASPSESSIONIDASSRATTQ, (2) TABLE_WIDGET_1, (3) TABLE_WIDGET_2, (4) browserDateTimeInfo, or (5) browserNumberInfo cookie parameter to DashBoardGUI.aspx; or the (6) UID parameter to login.aspx.
CVE-2012-2959 1 Bmc 1 Identity Management Suite 2012-06-12 5.1 MEDIUM N/A
Cross-site request forgery (CSRF) vulnerability in password-manager/changePasswords.do in BMC Identity Management Suite 7.5.00.103 allows remote attackers to hijack the authentication of administrators for requests that change passwords.
CVE-1999-0921 1 Bmc 1 Patrol Agent 2008-09-09 5.0 MEDIUM N/A
BMC Patrol allows any remote attacker to flood its UDP port, causing a denial of service.
CVE-1999-0801 1 Bmc 1 Patrol Agent 2008-09-09 10.0 HIGH N/A
BMC Patrol allows remote attackers to gain access to an agent by spoofing frames.
CVE-1999-0443 1 Bmc 1 Patrol Agent 2008-09-09 10.0 HIGH N/A
Patrol management software allows a remote attacker to conduct a replay attack to steal the administrator password.