Vulnerabilities > Bmcsoftware

DATE CVE VULNERABILITY TITLE RISK
2020-04-30 CVE-2019-19220 OS Command Injection vulnerability in Bmcsoftware Control-M/Agent 7.0.00.000
BMC Control-M/Agent 7.0.00.000 allows OS Command Injection (issue 2 of 2).
network
low complexity
bmcsoftware CWE-78
8.8
2020-04-30 CVE-2019-19219 Unspecified vulnerability in Bmcsoftware Control-M/Agent 7.0.00.000
BMC Control-M/Agent 7.0.00.000 allows Arbitrary File Download.
network
low complexity
bmcsoftware
7.5
2020-04-30 CVE-2019-19218 Incorrect Permission Assignment for Critical Resource vulnerability in Bmcsoftware Control-M/Agent 7.0.00.000
BMC Control-M/Agent 7.0.00.000 has Insecure Password Storage.
network
low complexity
bmcsoftware CWE-732
7.5
2020-04-30 CVE-2019-19217 OS Command Injection vulnerability in Bmcsoftware Control-M/Agent 7.0.00.000
BMC Control-M/Agent 7.0.00.000 allows OS Command Injection.
network
low complexity
bmcsoftware CWE-78
8.8
2020-04-30 CVE-2019-19216 Improper Privilege Management vulnerability in Bmcsoftware Control-M/Agent 7.0.00.000
BMC Control-M/Agent 7.0.00.000 has an Insecure File Copy.
network
low complexity
bmcsoftware CWE-269
8.8
2020-04-30 CVE-2019-19215 Classic Buffer Overflow vulnerability in Bmcsoftware Control-M/Agent 7.0.00.000
A buffer overflow vulnerability in BMC Control-M/Agent 7.0.00.000 when the On-Do action destination is Mail and the Control-M/Agent is configured to send the email, allows remote attackers to have unspecified impact via vectors related to the configured IP address or SMTP server.
network
low complexity
bmcsoftware CWE-120
8.8