BMC Control-M/Agent
cpe:2.3:a:bmc:control-m/agent:*:*:*:*:*:*:*, +2 more
- <= 9.0.20.000
A path traversal vulnerability has been identified in BMC Control-M/Agent for UNIX and Windows, specifically in versions 9.0.18 prior to 9.0.20, and potentially earlier unsupported versions. This vulnerability allows local privilege escalation when an attacker has access to the system running the Agent.
Exploitation of this vulnerability can lead to unauthorized elevation of privileges on the affected system.
Users are advised to upgrade to Control-M/Agent version 9.0.20.100 or higher. For those on versions 9.0.20.000 and lower, BMC recommends upgrading to version 9.0.20.200, where the fix has been implemented.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.