Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Format string vulnerability in BMC PATROL Agent before 3.7.30 allows remote attackers to execute arbitrary code via format string specifiers in an invalid version number to TCP port 3181, which are not properly handled when writing a log message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BMC Performance Manager PatrolAgent服务格式串漏洞
Vulnerability Description
BMC Performance Manager是一个端到端系统管理解决方案,提供了诊断复杂问题所需的功能。 BMC Performance Manager的PatrolAgent服务在写入日志消息时存在格式串漏洞。如果远程攻击者向目标系统的TCP 3181端口发送了包含有格式串字符令牌的无效版本号的话,就可能向日志中写入恶意字符串,并在用户查看日志时执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A