Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Remedy Mid Tier in BMC Remedy AR System 9.1 allows XSS via the ATTKey parameter in an arsys/servlet/AttachServlet request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BMC Remedy AR System Remedy Mid Tier 跨站请求伪造漏洞
Vulnerability Description
BMC Remedy AR System是美国BMC Software公司的一套用于IT部门的移动数字化企业管理平台。Remedy Mid Tier是其中的一个中间件。 BMC Remedy AR System 9.1版本中的Remedy Mid Tier存在跨站请求伪造漏洞。远程攻击者可借助arsys/servlet/AttachServlet请求中的‘ATTKey’参数利用该漏洞执行脚本。
CVSS Information
N/A
Vulnerability Type
N/A